CVE-2023-6070: SSRF
Published Nov 29, 2023
·Updated
A server-side request forgery vulnerability in ESM prior to version 11.6.8 allows a low privileged authenticated user to upload arbitrary content, potentially altering configuration. This is possible through the certificate validation functionality where the API accepts uploaded content and doesn't parse for invalid data
Affected Software
1 affected component
Trellix Enterprise Security Manager<11.6.8
Event History
Nov 29, 2023
CVE Published
08:53 AM
Data Sourced
08:53 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this server-side request forgery vulnerability?
The vulnerability ID is CVE-2023-6070.
2
What is the severity of CVE-2023-6070?
The severity of CVE-2023-6070 is medium with a CVSS score of 4.3.
3
How does CVE-2023-6070 affect Trellix Enterprise Security Manager?
CVE-2023-6070 affects Trellix Enterprise Security Manager versions up to exclusive version 11.6.8.
4
How can a low privileged authenticated user exploit CVE-2023-6070?
A low privileged authenticated user can exploit CVE-2023-6070 to upload arbitrary content and potentially alter the configuration of the server.
5
Is there a fix available for CVE-2023-6070?
Yes, the fix for CVE-2023-6070 is to update to ESM version 11.6.8 or higher.