CVE-2023-31455
HIGHCVSS 7.5/10EPSS 0.61%
Last modified
CVE-2023-31455 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Pexip Infinity before 31.2 has Improper Input Validation for RTCP, allowing remote attackers to trigger an abort.. EPSS estimates a 0.61% chance of exploitation in the next 30 days.
Description
Pexip Infinity before 31.2 has Improper Input Validation for RTCP, allowing remote attackers to trigger an abort.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Pexip | Pexip Infinity | < 31.2 |
References
- https://docs.pexip.com/admin/security_bulletins.htmVendor Advisory
- https://docs.pexip.com/admin/security_bulletins.htmVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-31455?
Pexip Infinity before 31.2 has Improper Input Validation for RTCP, allowing remote attackers to trigger an abort.
How severe is CVE-2023-31455?
CVE-2023-31455 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 0.61% probability of exploitation in the next 30 days.
How do I fix CVE-2023-31455?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-31449A path traversal vulnerability was identified in the WMI Cus…4.7
- CVE-2023-3145A vulnerability, which was classified as critical, has been …8.8
- CVE-2023-31450A path traversal vulnerability was identified in the SQL v2 …4.7
- CVE-2023-31452A cross-site request forgery (CSRF) token bypass was identif…8.8
- CVE-2023-31453Incorrect Permission Assignment for Critical Resource Vulner…7.5
- CVE-2023-31454Incorrect Permission Assignment for Critical Resource Vulner…7.5
- CVE-2023-31456There is an SSRF vulnerability in the Fluid Topics platform …5.4
- CVE-2023-31457A vulnerability in the Headquarters server component of Mite…9.8
- CVE-2023-31458A vulnerability in the Edge Gateway component of Mitel MiVoi…9.8
- CVE-2023-31459A vulnerability in the Connect Mobility Router component of …8.8
- CVE-2023-3146A vulnerability, which was classified as critical, was found…8.8
- CVE-2023-31460A vulnerability in the Connect Mobility Router component of …7.2
Are you affected by CVE-2023-31455?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
