CVE-2023-2882
- EPSS 0.1%
- Veröffentlicht 25.05.2023 09:15:12
- Zuletzt bearbeitet 21.11.2024 07:59:29
Generation of Incorrect Security Tokens vulnerability in CBOT Chatbot allows Token Impersonation, Privilege Abuse.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2883
- EPSS 0.02%
- Veröffentlicht 25.05.2023 09:15:12
- Zuletzt bearbeitet 21.11.2024 07:59:29
Authorization Bypass Through User-Controlled Key vulnerability in CBOT Chatbot allows Authentication Abuse, Authentication Bypass.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2884
- EPSS 0.12%
- Veröffentlicht 25.05.2023 09:15:12
- Zuletzt bearbeitet 21.11.2024 07:59:29
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG), Use of Insufficiently Random Values vulnerability in CBOT Chatbot allows Signature Spoofing by Key Recreation.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2885
- EPSS 0.1%
- Veröffentlicht 25.05.2023 09:15:12
- Zuletzt bearbeitet 21.11.2024 07:59:29
Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in CBOT Chatbot allows Adversary in the Middle (AiTM).This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2886
- EPSS 0.08%
- Veröffentlicht 25.05.2023 09:15:12
- Zuletzt bearbeitet 21.11.2024 07:59:29
Missing Origin Validation in WebSockets vulnerability in CBOT Chatbot allows Content Spoofing Via Application API Manipulation.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2887
- EPSS 0.02%
- Veröffentlicht 25.05.2023 09:15:12
- Zuletzt bearbeitet 21.11.2024 07:59:30
Authentication Bypass by Spoofing vulnerability in CBOT Chatbot allows Authentication Bypass.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.