← Back

CVE-2023-2418

nvd nist
Published: Apr 29, 2023Modified: Jun 17, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

A vulnerability was found in Konga 2.8.3 on Kong. It has been classified as problematic. This affects an unknown part of the component Login API. The manipulation leads to insufficiently random values. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. It is recommended to change the configuration settings. The associated identifier of this vulnerability is VDB-227715.

Affected (1)

Products: Konghq: Kong
1 product
Kong
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.8.3

References (7)

Source: cna@vuldb.com
Permissions Required
Source: cna@vuldb.com
Permissions Required
Source: cna@vuldb.com
Broken Link
Source: nvd@nist.gov
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link

Timeline

No history available yet.