← Back

CVE-2023-6835

nvd nist
Published: Dec 15, 2023Modified: Jun 17, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

Multiple WSO2 products have been identified as vulnerable due to lack of server-side input validation in the Forum feature, API rating could be manipulated.

Affected (4)

2 products
Api Manager
Iot Server
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Wso2
Version 2.2.0
Version 2.5.0
Version 2.6.0
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.3.1

Timeline

No history available yet.