Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32456 | Server-side request forgery vulnerability exists in CONPROSYS HMI System (CHS) versions prior to 3.5.3. A user who can access the affected product with an administrative privilege may bypass the database restriction set on the query setting page, and connect to a user unintended database. |
Thu, 09 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-01-09T19:29:17.173Z
Reserved: 2023-05-11T00:00:00.000Z
Link: CVE-2023-28824
Updated: 2024-08-02T13:51:38.483Z
Status : Modified
Published: 2023-06-01T02:15:09.673
Modified: 2025-01-09T20:15:32.740
Link: CVE-2023-28824
No data.
OpenCVE Enrichment
No data.
EUVD