nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-35767 CVE-2023-35767
HIGH
Unauthenticated Remote Denial-of-Service via Shutdown Function in Helix Core
Record summary
CVE-2023-35767 has a selected CVSS score of 7.5 (high).
Description
In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the shutdown function was identified. Reported by Jason Geffner.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Sep 4, 2024 · Source: CVE List
Affected products and versions
3| Product | Source | Version range | Status |
|---|---|---|---|
Helix CoreBrowse Helix / Helix CoreDefault status: unaffected | CVE List | 0.0.0 to < 2023.2 | affected |
| 0.0.0 to < 2023.1 Patch 2 | affected | ||
| 0.0.0 to < 2022.2 Patch 3 | affected | ||
| 0.0.0 to < 2022.1 Patch 6 | affected | ||
| 0.0.0 to < 2021.2 Patch 10 | affected | ||
Helix SwarmBrowse Helix / Helix SwarmDefault status: unaffected | CVE List | 0.0.0 to < 2024.1 | affected |
helix_coreBrowse perforce / helix_coreDefault status: unknown | CVE List | Before 2023.1\/patch_2\/ | affected |
| 0.0.0 to < 2022.2\/patch_3\/ | affected | ||
| 0.0.0 to < 2022.1\/patch_6\/ | affected | ||
| 0.0.0 to < 2021.2\/patch_10\/ | affected |
References
2perforce.com
https://perforce.com/