CVE-2023-50612

HIGH

fit2cloud CloudExplorer Lite 1.4.1 - Insecure Permissions via Cloud Accounts Parameter

Title source: llm
STIX 2.1

Description

Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain sensitive information via the cloud accounts parameter.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0026
EPSS Percentile 16.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-276
Status published
Products (1)
fit2cloud/cloudexplorer_lite 1.4.1
Published Jan 06, 2024
Tracked Since Feb 18, 2026