Vulnerabilities > CVE-2023-24471 - Incorrect Authorization vulnerability in Nozominetworks CMC and Guardian
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
An access control vulnerability was found, due to the restrictions that are applied on actual assertions not being enforced in their debug functionality. An authenticated user with reduced visibility can obtain unauthorized information via the debug functionality, obtaining data that would normally be not accessible in the Query and Assertions functions.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 7 |