CVE-2023-4094
Last modified
CVE-2023-4094 is a high-severity vulnerability rated 8.2/10 on the CVSS scale. ARCONTE Aurea's authentication system, in its 1.5.0.0 version, could allow an attacker to make incorrect access requests in order to block each legitimate account and cause a denial of service. In addition, a resource has been identified that could allow circumventing the attempt limit set in the login form.. EPSS estimates a 0.42% chance of exploitation in the next 30 days.
Description
ARCONTE Aurea's authentication system, in its 1.5.0.0 version, could allow an attacker to make incorrect access requests in order to block each legitimate account and cause a denial of service. In addition, a resource has been identified that could allow circumventing the attempt limit set in the login form.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Fujitsu | Arconte Aurea | 1.5.0.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-4094?
How severe is CVE-2023-4094?
How do I fix CVE-2023-4094?
Are you affected by CVE-2023-4094?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
