Lucene search

K
cvelistApacheCVELIST:CVE-2023-33933
HistoryJun 14, 2023 - 7:44 a.m.

CVE-2023-33933 Apache Traffic Server: s3_auth plugin problem with hash calculation

2023-06-1407:44:12
CWE-200
apache
www.cve.org
4
cve-2023-33933
apache traffic server
sensitive information exposure
unauthorized actor
vulnerability
hash calculation
software foundation

EPSS

0.001

Percentile

34.8%

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache Traffic Server.This issue affects Apache Traffic Server: from 8.0.0 through 9.2.0.

8.x users should upgrade to 8.1.7 or later versions
9.x users should upgrade to 9.2.1 or later versions

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Apache Traffic Server",
    "vendor": "Apache Software Foundation",
    "versions": [
      {
        "lessThanOrEqual": "9.2.0",
        "status": "affected",
        "version": "8.0.0",
        "versionType": "semver"
      }
    ]
  }
]

EPSS

0.001

Percentile

34.8%