Lucene search

K
cvePatchstackCVE-2023-38389
HistoryJun 21, 2024 - 4:15 p.m.

CVE-2023-38389

2024-06-2116:15:11
CWE-863
Patchstack
web.nvd.nist.gov
58
cve-2023-38389
security vulnerability
disclosure
nvd

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

6.9

Confidence

High

EPSS

0.001

Percentile

39.3%

Incorrect Authorization vulnerability in Artbees JupiterX Core allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects JupiterX Core: from n/a through 3.3.8.

Affected configurations

Nvd
Vulners
Node
artbeesjupiter_x_coreRange3.3.8wordpress
VendorProductVersionCPE
artbeesjupiter_x_core*cpe:2.3:a:artbees:jupiter_x_core:*:*:*:*:*:wordpress:*:*

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "JupiterX Core",
    "vendor": "Artbees",
    "versions": [
      {
        "changes": [
          {
            "at": "3.4.3",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "3.3.8",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

6.9

Confidence

High

EPSS

0.001

Percentile

39.3%