CVE-2023-23752

medium

Description

An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

References

https://kruk-cyb3r.medium.com/htb-office-writeup-c2a8b08d4ead?source=rss------hacking-5

https://kruk-cyb3r.medium.com/htb-office-writeup-c2a8b08d4ead?source=rss------cybersecurity-5

https://medium.com/@aslam.mahimkar/hackthebox-office-writeup-5b19112838d0?source=rss------hacking-5

https://medium.com/@johnniketas/hackthebox-devvortex-de8d997d9ffb?source=rss------hacking-5

https://medium.com/@sam_0x0/devvortex-hackthebox-walkthrough-6b6cbf8df1eb?source=rss------infosec-5

https://infosecwriteups.com/devvortex-hackthebox-walkthrough-6b6cbf8df1eb?gi=de01b203dad9&source=rss------infosec-5

https://infosecwriteups.com/devvortex-hackthebox-walkthrough-6b6cbf8df1eb?gi=bdf1f59f5989&source=rss------infosec-5

https://infosecwriteups.com/devvortex-hackthebox-walkthrough-6b6cbf8df1eb?gi=ab999358bd46&source=rss------infosec-5

https://infosecwriteups.com/devvortex-hackthebox-walkthrough-6b6cbf8df1eb?gi=9c318897cbc7&source=rss------infosec-5

https://medium.com/@dlawyn/devvortex-htb-walktrought-ee6896c5ec55?source=rss------hacking-5

https://medium.com/@preacher.fulltime/devvortex-write-up-4a5b8a336619?source=rss------hacking-5

https://medium.com/@techjazzgirl/hack-the-box-devvortex-writeup-f4bb1a6eceda?source=rss------hacking-5

https://medium.com/@emilio.pancubit/hackthebox-lab-devvortex-walkthrough-d628c75e5687?source=rss------cybersecurity-5

https://www.bleepingcomputer.com/news/security/cisa-warns-agencies-of-fourth-flaw-used-in-triangulation-spyware-attacks/

https://www.group-ib.com/blog/gambleforce-gang/

https://thehackernews.com/2023/12/new-hacker-group-gambleforce-tageting.html

https://developer.joomla.org/security-centre/894-20230201-core-improper-access-check-in-webservice-endpoints.html

Details

Source: Mitre, NVD

Published: 2023-02-16

Updated: 2024-01-09

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 5.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Severity: Medium