Lucene search

K
hiveproHive ProHIVEPRO:01CD113B50EA07E0CC63AC7997C91F06
HistoryJan 03, 2024 - 9:22 a.m.

Zero-Day Authentication Bypass Exploit in Apache OFBiz

2024-01-0309:22:05
Hive Pro
www.hivepro.com
39
authentication bypass
apache ofbiz
cve-2023-51467
ssrf
arbitrary code execution
update
threat advisory
red level
real-time advisories
hiveforce labs

8 High

AI Score

Confidence

Low

0.639 Medium

EPSS

Percentile

97.9%

Summary: CVE-2023-51467 is a critical authentication bypass vulnerability in Apache OFBiz. Exploitation of this vulnerability could result in bypass authentication to achieve a simple Server-Side Request Forgery (SSRF) or arbitrary code execution. Users are advised to update to Apache OFBiz version 18.12.11 to mitigate potential risks. Threat Level - Red | Vulnerability Report For a detailed threat advisory, download the pdf file here To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.

8 High

AI Score

Confidence

Low

0.639 Medium

EPSS

Percentile

97.9%