CVE-2023-48087: Medium severity xxl-job vulnerability
Published Nov 15, 2023
·Updated
xxl-job-admin 2.4.0 is vulnerable to Insecure Permissions via /xxl-job-admin/joblog/clearLog and /xxl-job-admin/joblog/logDetailCat.
Affected Software
2 affected components
maven/com.xuxueli:xxl-job-admin<=2.4.0
Xuxueli xxl-job=2.4.0
Event History
Nov 15, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Advisory Published
03:30 PM
Frequently Asked Questions
1
What is CVE-2023-48087?
CVE-2023-48087 is a vulnerability in xxl-job-admin 2.4.0 that allows insecure permissions via certain endpoints.
2
How severe is CVE-2023-48087?
CVE-2023-48087 has a severity score of 5.4 (medium).
3
How does CVE-2023-48087 affect xxl-job-admin?
xxl-job-admin version 2.4.0 is affected by CVE-2023-48087.
4
What is the fix for CVE-2023-48087?
There is no available fix for CVE-2023-48087 at the moment. It is recommended to update to a patched version when it becomes available.
5
Where can I find more information about CVE-2023-48087?
You can find more information about CVE-2023-48087 in the provided references: [link1], [link2], [link3].