← back
CVE-2023-28125mediumCWE-287

CVE-2023-28125

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.9epss 2.3%
exploitation probability
2.3%top 18% of all CVEs
observed exploitation
nono source reports it
An improper authentication vulnerability exists in Avalanche Premise versions 6.3.x and below that could allow an attacker to gain access to the server by registering to receive messages from the server and perform an authentication bypass.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
n/a · Avalanche