Record summary

CVE-2023-35767 has a selected CVSS score of 7.5 (high).

Description

In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the shutdown function was identified. Reported by Jason Geffner.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Sep 4, 2024 · Source: CVE List

Affected products and versions

3
ProductSourceVersion rangeStatus

Default status: unaffected

CVE List0.0.0 to < 2023.2affected
0.0.0 to < 2023.1 Patch 2affected
0.0.0 to < 2022.2 Patch 3affected
0.0.0 to < 2022.1 Patch 6affected
0.0.0 to < 2021.2 Patch 10affected

Default status: unaffected

CVE List0.0.0 to < 2024.1affected

Default status: unknown

CVE ListBefore 2023.1\/patch_2\/affected
0.0.0 to < 2022.2\/patch_3\/affected
0.0.0 to < 2022.1\/patch_6\/affected
0.0.0 to < 2021.2\/patch_10\/affected

References

2