PT-2023-29574 · Golden · Golden

Published

2023-11-13

·

Updated

2024-09-03

·

CVE-2023-45558

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Golden version 13.6.1
Description An issue in Golden allows attackers to send crafted notifications via leakage of the channel access token.
Recommendations For Golden version 13.6.1, consider restricting access to the notification system until a patch is available. As a temporary workaround, avoid using the leaked channel access token to minimize the risk of exploitation.

Exploit

Fix

Related Identifiers

CVE-2023-45558

Affected Products

Golden