AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-48253

HIGH · CVSS 8.8 EPSS 0.87%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-01-10 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.

CVE
CVE-2023-48253
Severity
HIGH
CVSS
8.8
EPSS
0.87%

Original NVD Description

The vulnerability allows a remote authenticated attacker to read or update arbitrary content of the authentication database via a crafted HTTP request. By abusing this vulnerability it is possible to exfiltrate other users’ password hashes or update them with arbitrary values and access their accounts.

Related CVEs

Other vulnerabilities affecting the same vendor(s)