CVE-2023-49328: High severity wolterskluwer B.point vulnerability
On a Wolters Kluwer B.POINT 23.70.00 server running Linux on premises, during the authentication phase, a validated system user can achieve remote code execution via Argument Injection in the server-to-server module.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-49328?
CVE-2023-49328 has been classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2023-49328?
To remediate CVE-2023-49328, update to the latest version of Wolters Kluwer B.POINT that addresses this vulnerability.
Who is affected by CVE-2023-49328?
CVE-2023-49328 affects users of Wolters Kluwer B.POINT version 23.70.00 running on Linux servers.
What type of vulnerability is CVE-2023-49328?
CVE-2023-49328 is classified as an Argument Injection vulnerability that allows for remote code execution.
When was CVE-2023-49328 disclosed?
The specific disclosure date for CVE-2023-49328 is not provided, but timely action is recommended to mitigate risk.