Bug 1209182 (CVE-2023-1307) - VUL-0: CVE-2023-1307: Authentication Bypass by Primary Weakness in GitHub repository froxlor/froxlor prior to 2.0.13.
Summary: VUL-0: CVE-2023-1307: Authentication Bypass by Primary Weakness in GitHub rep...
Status: RESOLVED FIXED
Alias: CVE-2023-1307
Product: openSUSE Distribution
Classification: openSUSE
Component: Security (show other bugs)
Version: Leap 15.4
Hardware: Other Other
: P3 - Medium : Critical (vote)
Target Milestone: Leap 15.4
Assignee: Andrej Semen
QA Contact: E-mail List
URL: https://smash.suse.de/issue/359649/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2023-03-13 04:44 UTC by Stoyan Manolov
Modified: 2023-03-30 07:36 UTC (History)
2 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 2 Andrej Semen 2023-03-13 15:41:41 UTC
This issue was found in froxlor 2.0.12. Fixed in 2.0.13

See also https://vuldb.com/de/?id.222695
https://github.com/advisories/GHSA-j83x-r9qq-9g4v
Comment 3 Stoyan Manolov 2023-03-30 07:36:19 UTC
closing