CVE-2023-45083
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
05/12/2023
Last modified:
12/12/2023
Description
An Improper Privilege Management vulnerability exists in HyperCloud that will impact the ability for a user to authenticate against the management plane.<br />
<br />
An authenticated admin-level user may be able to delete the "admin" or "serveradmin" users, which prevents authentication from subsequently succeeding.<br />
<br />
This issue affects HyperCloud versions 1.0 to any release before 2.1.<br />
<br />
Impact
Base Score 3.x
4.40
Severity 3.x
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:softiron:hypercloud:*:*:*:*:*:*:*:* | 1.0 (including) | 2.1.0 (excluding) |
To consult the complete list of CPE names with products and versions, see this page