PT-2023-20907 · Unknown · Finex Media Competition Management System

Published

2023-05-23

·

Updated

2026-05-22

·

CVE-2023-2703

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Finex Media Competition Management System versions prior to 23.07
Description The issue allows exposure of private personal information to an unauthorized actor, enabling the retrieval of embedded sensitive data and collection of data as provided by users.
Recommendations For versions prior to 23.07, update to a version released after 23.07 to resolve the issue. As a temporary workaround, consider restricting access to sensitive data and embedded information to minimize the risk of exploitation.

Fix

Exposure of Resource to Wrong Sphere

Weakness Enumeration

Related Identifiers

CVE-2023-2703

Affected Products

Finex Media Competition Management System