CVE-2023-48658

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/11/2023
Last modified:
10/01/2024

Description

An issue was discovered in MISP before 2.4.176. app/Model/AppModel.php lacks a checkParam function for alphanumerics, underscore, dash, period, and space.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:misp-project:malware_information_sharing_platform:*:*:*:*:*:*:*:* 2.4.176 (excluding)