PT-2023-29574 · Golden · Golden

CVE-2023-45558

·

Published

2023-11-13

·

Updated

2024-09-03

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Golden version 13.6.1
Description An issue in Golden allows attackers to send crafted notifications via leakage of the channel access token.
Recommendations For Golden version 13.6.1, consider restricting access to the notification system until a patch is available. As a temporary workaround, avoid using the leaked channel access token to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-45558

Affected Products

Golden