PT-2023-3360 · Apache · Apache Traffic Server
Masakazu Kitajo
·
Published
2023-06-13
·
Updated
2024-10-09
·
CVE-2023-33933
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apache Traffic Server versions 8.0.0 through 9.2.0
Description
The issue is related to insufficient protection of service data, which may allow a remote attacker to gain unauthorized access to confidential information.
Recommendations
8.x users should upgrade to 8.1.7 or later versions
9.x users should upgrade to 9.2.1 or later versions
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apache Traffic Server