CVE-2023-50918: Critical severity Misp-project Misp vulnerability
Published Dec 15, 2023
·Updated
app/Controller/AuditLogsController.php in MISP before 2.4.182 mishandles ACLs for audit logs.
Affected Software
1 affected component
Misp-project Misp<2.4.182
Remediation
Patch Available
Event History
Dec 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-50918?
CVE-2023-50918 is classified as a medium severity vulnerability due to potential unauthorized access to audit logs.
2
How do I fix CVE-2023-50918?
To fix CVE-2023-50918, you should update MISP to version 2.4.182 or later.
3
What type of vulnerability is CVE-2023-50918?
CVE-2023-50918 is an access control vulnerability related to mishandling ACLs in MISP.
4
What software is affected by CVE-2023-50918?
CVE-2023-50918 affects MISP versions prior to 2.4.182.
5
What components of MISP are impacted by CVE-2023-50918?
CVE-2023-50918 impacts the app/Controller/AuditLogsController.php file and its handling of audit logs.