CVE-2023-45349
Last modified
CVE-2023-45349 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.34.7, 4000 Assistant V10 R1.42.0, 4000 Assistant V10 R0, 4000 Manager V10 R1 before V10 R1.34.7, 4000 Manager V10 R1.42.0, and 4000 Manager V10 R0 expose sensitive information that may allow lateral movement to the backup system via AShbr. This is also known as OSFOURK-23722.. EPSS estimates a 0.47% chance of exploitation in the next 30 days.
Description
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.34.7, 4000 Assistant V10 R1.42.0, 4000 Assistant V10 R0, 4000 Manager V10 R1 before V10 R1.34.7, 4000 Manager V10 R1.42.0, and 4000 Manager V10 R0 expose sensitive information that may allow lateral movement to the backup system via AShbr. This is also known as OSFOURK-23722.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Atos | Unify Openscape 4000 Assistant | 10 | R0 |
| Atos | Unify Openscape 4000 Manager | 10 | R0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-45349?
How severe is CVE-2023-45349?
How do I fix CVE-2023-45349?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-45343Online Food Ordering System v1.0 is vulnerable to multiple U…9.8
- CVE-2023-45344Online Food Ordering System v1.0 is vulnerable to multiple U…9.8
- CVE-2023-45345Online Food Ordering System v1.0 is vulnerable to multiple U…9.8
- CVE-2023-45346Online Food Ordering System v1.0 is vulnerable to multiple U…9.8
- CVE-2023-45347Online Food Ordering System v1.0 is vulnerable to multiple U…9.8
- CVE-2023-45348Apache Airflow, versions 2.7.0 and 2.7.1, is affected by a v…4.3
- CVE-2023-4535An out-of-bounds read vulnerability was found in OpenSC pack…3.8
- CVE-2023-45350Atos Unify OpenScape 4000 Manager V10 R1 before V10 R1.42.1 …8.8
- CVE-2023-45351Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.…8.8
- CVE-2023-45352Atos Unify OpenScape Common Management Portal V10 before V10…8.8
- CVE-2023-45353Atos Unify OpenScape Common Management Portal V10 before V10…8.8
- CVE-2023-45354Atos Unify OpenScape Common Management Portal V10 before V10…8.8
Are you affected by CVE-2023-45349?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
