A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow
changes to administrative credentials, leading to potential remote code execution without
requiring prior authentication on the Java RMI interface.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32980 | A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution without requiring prior authentication on the Java RMI interface. |
Wed, 05 Feb 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-02-05T21:22:08.895Z
Reserved: 2023-04-05T20:35:41.367Z
Link: CVE-2023-29411
Updated: 2024-08-02T14:07:46.023Z
Status : Modified
Published: 2023-04-18T21:15:09.390
Modified: 2024-11-21T07:57:00.540
Link: CVE-2023-29411
No data.
OpenCVE Enrichment
No data.
EUVD