CVE-2023-29923

MEDIUM NUCLEI

Powerjob - Incorrect Default Permissions

Title source: rule

Description

PowerJob V4.3.1 is vulnerable to Insecure Permissions. via the list job interface.

Exploits (5)

nomisec SCANNER 15 stars
by 1820112015 · poc
https://github.com/1820112015/CVE-2023-29923
nomisec SCANNER 3 stars
by P4x1s · poc
https://github.com/P4x1s/CVE-2023-29923-Scan
nomisec SCANNER 2 stars
by Le1a · poc
https://github.com/Le1a/CVE-2023-29923
inthewild SCANNER
poc
https://github.com/ckevens/cve-2023-29923-scan
inthewild SCANNER
poc
https://github.com/3yujw7njai/cve-2023-29923-scan

Nuclei Templates (1)

PowerJob <=4.3.2 - Unauthenticated Access
MEDIUMVERIFIEDby For3stCo1d
Shodan: http.html:"powerjob"
FOFA: app="PowerJob" || app="powerjob" || body="powerjob"

Scores

CVSS v3 5.3
EPSS 0.8544
EPSS Percentile 99.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-276
Status published
Products (2)
powerjob/powerjob 4.3.1
tech.powerjob/powerjob 0Maven
Published Apr 19, 2023
Tracked Since Feb 18, 2026