CVE-2023-50612

Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain sensitive information via the cloud accounts parameter.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:fit2cloud:cloudexplorer_lite:1.4.1:*:*:*:*:*:*:*

History

11 Jan 2024, 15:02

Type Values Removed Values Added
CWE CWE-276
CPE cpe:2.3:a:fit2cloud:cloudexplorer_lite:1.4.1:*:*:*:*:*:*:*
References () https://github.com/yaowenxiao721/CloudExplorer-Lite-v1.4.1-vulnerability-BOPLA - () https://github.com/yaowenxiao721/CloudExplorer-Lite-v1.4.1-vulnerability-BOPLA - Exploit, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
First Time Fit2cloud
Fit2cloud cloudexplorer Lite

08 Jan 2024, 12:02

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de permisos inseguros en fit2cloud Cloud Explorer Lite versión 1.4.1 permite a atacantes locales escalar privilegios y obtener información confidencial a través del parámetro de cuentas en la nube.

06 Jan 2024, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-06 03:15

Updated : 2024-01-11 15:02


NVD link : CVE-2023-50612

Mitre link : CVE-2023-50612

CVE.ORG link : CVE-2023-50612


JSON object : View

Products Affected

fit2cloud

  • cloudexplorer_lite
CWE
CWE-276

Incorrect Default Permissions