PT-2024-12600 · Loftware · Loftware Spectrum

Nikolas Sotiriu

·

Published

2024-09-10

·

Updated

2024-09-18

·

CVE-2023-37232

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Loftware Spectrum versions through 4.6
Description The issue exposes sensitive information, specifically logs, to unauthorized actors. This allows unauthorized access to potentially sensitive data.
Recommendations For Loftware Spectrum versions through 4.6, update to a version that addresses the exposure of sensitive information to unauthorized actors. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-37232

Affected Products

Loftware Spectrum