PT-2023-29574 · Golden · Golden

CVE-2023-45558

·

Publicado

2023-11-13

·

Atualizado

2024-09-03

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Golden version 13.6.1
Description An issue in Golden allows attackers to send crafted notifications via leakage of the channel access token.
Recommendations For Golden version 13.6.1, consider restricting access to the notification system until a patch is available. As a temporary workaround, avoid using the leaked channel access token to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2023-45558

Produtos afetados

Golden