← Back to CVE List
Vulnerability Intelligence Report
Apache OFBiz: Pre-authentication Remote Code Execution (RCE) vulnerability

CVE-2023-51467

The vulnerability permits attackers to circumvent authentication processes, enabling them to remotely execute arbitrary code

Nuclei Template
CVSS Base Score
9.8
CRITICAL
EPSS Probability:96.00%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
Apache Software Foundation Apache OFBiz 0 < 18.12.11 (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

Nuclei Template
SCANNER AVAILABLE
EPSS Score
96.001%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityApache Software Foundation · Vendor · USA
Reserved2023-12-20T12:14:42
Published2023-12-26T14:46:59
Last Updated2024-08-19T07:48:14

LINK COPIED TO CLIPBOARD