Lucene search

K
cvelistMitreCVELIST:CVE-2023-49238
HistoryJan 09, 2024 - 12:00 a.m.

CVE-2023-49238

2024-01-0900:00:00
mitre
www.cve.org
cve-2023-49238
remote attacker
gain access
non-unique password
installation scenarios
initial system user
first login

9.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.8%

In Gradle Enterprise before 2023.1, a remote attacker may be able to gain access to a new installation (in certain installation scenarios) because of a non-unique initial system user password. Although this password must be changed upon the first login, it is possible that an attacker logs in before the legitimate administrator logs in.

9.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.8%

Related for CVELIST:CVE-2023-49238