PT-2023-29957 · Wallix · Wallix Bastion

Published

2023-10-22

·

Updated

2024-09-12

·

CVE-2023-46319

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions WALLIX Bastion versions 9.x through 9.0.8 WALLIX Bastion versions 10.x through 10.0.4
Description The issue allows unauthenticated access to sensitive information by bypassing access control on a network access administration web interface.
Recommendations For versions 9.x through 9.0.8, update to version 9.0.9 or later. For versions 10.x through 10.0.4, update to version 10.0.5 or later.

Fix

Authentication Bypass Using an Alternate Path or Channel

Weakness Enumeration

Related Identifiers

CVE-2023-46319

Affected Products

Wallix Bastion