CVE-2023-45659 affects the Engelsystem shift planning system, where a compromised user session persists even after the user's password has been reset. This vulnerability has a low CVSS score of 2.8, indicating a low attack complexity and impact, primarily affecting integrity with no confidentiality or availability impact. While there are no known public exploits, Metasploit modules, or Nuclei templates, the vulnerability has been patched in commit dbb089315ff3d, and users are advised to update their installations. There is currently no evidence of active exploitation or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2023-09-18CPE matchmatch criteria | cpe:2.3:a:engelsystem:engelsystem:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.2 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.