Lucene search

K
cvelistMitreCVELIST:CVE-2023-50453
HistoryDec 10, 2023 - 12:00 a.m.

CVE-2023-50453

2023-12-1000:00:00
mitre
www.cve.org
zammad
endpoint
login
configuration
security

5.5 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.0%

An issue was discovered in Zammad before 6.2.0. It uses the public endpoint /api/v1/signshow for its login screen. This endpoint returns internal configuration data of user object attributes, such as selectable values, which should not be visible to the public.

5.5 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.0%

Related for CVELIST:CVE-2023-50453