PT-2023-20997 · Dualspace · Dualspace

Published

2023-04-14

·

Updated

2023-04-22

·

CVE-2023-27193

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions DUALSPACE version 1.1.3
Description An issue in DUALSPACE allows a local attacker to gain privileges via the key ad new user avoid time field.
Recommendations For DUALSPACE version 1.1.3, consider restricting access to the key ad new user avoid time field to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

CVE-2023-27193

Affected Products

Dualspace