PT-2024-14812 · Unknown+1 · Ailux Imx6 Bundle+1

Andrea Palanca

·

Published

2024-03-05

·

Updated

2025-04-09

·

CVE-2023-5457

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AiLux imx6 bundle versions prior to imx6 1.0.7-2
Description A CWE-1269 issue in the Django web framework, due to the debug configuration parameter set to True, allows a remote unauthenticated attacker to access critical information and have other unspecified impacts to the confidentiality, integrity, and availability of the application.
Recommendations For AiLux imx6 bundle versions prior to imx6 1.0.7-2, update to version imx6 1.0.7-2 or later to resolve the issue. As a temporary workaround, consider setting the debug configuration parameter to False to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-5457

Affected Products

Ailux Imx6 Bundle
Django