The package authelia-bhf included in Beckhoffs TwinCAT/BSD is prone to an open redirect that allows a remote unprivileged attacker to redirect a user to another site. This may have limited impact to integrity and does solely affect anthelia-bhf the Beckhoff fork of authelia.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2023-067/ | Third Party Advisory |
https://download.beckhoff.com/download/Document/product-security/Advisories/advisory-2023-001.pdf | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: CERTVDE
Published: 2023-12-14T14:09:13.652Z
Updated: 2024-02-15T10:58:40.477Z
Reserved: 2023-12-06T06:40:12.397Z
Link: CVE-2023-6545
JSON object: View
NVD Information
Status : Modified
Published: 2023-12-14T14:15:45.753
Modified: 2024-02-15T11:15:10.127
Link: CVE-2023-6545
JSON object: View
Redhat Information
No data.
CWE