An attacker with local access to the machine could record the traffic, which could allow them to resend requests without the server authenticating that the user or session are valid.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2023-06-07T21:44:56.326Z

Updated: 2023-06-07T21:44:56.326Z

Reserved: 2023-04-24T23:30:29.247Z


Link: CVE-2023-24476

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-06-07T22:15:09.553

Modified: 2023-06-15T17:25:11.497


Link: CVE-2023-24476

JSON object: View

cve-icon Redhat Information

No data.