A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution without requiring prior authentication on the Java RMI interface.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: schneider

Published: 2023-04-18T20:49:34.059Z

Updated: 2023-04-18T20:49:34.059Z

Reserved: 2023-04-05T20:35:41.367Z


Link: CVE-2023-29411

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-04-18T21:15:09.390

Modified: 2023-04-28T13:31:57.647


Link: CVE-2023-29411

JSON object: View

cve-icon Redhat Information

No data.

CWE