CVE-2023-45083

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
05/12/2023
Last modified:
12/12/2023

Description

An Improper Privilege Management vulnerability exists in HyperCloud that will impact the ability for a user to authenticate against the management plane.<br /> <br /> An authenticated admin-level user may be able to delete the "admin" or "serveradmin" users, which prevents authentication from subsequently succeeding.<br /> <br /> This issue affects HyperCloud versions 1.0 to any release before 2.1.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:softiron:hypercloud:*:*:*:*:*:*:*:* 1.0 (including) 2.1.0 (excluding)


References to Advisories, Solutions, and Tools