Marval MSM through 14.19.0.12476 uses a static encryption key for secrets. An attacker that gains access to encrypted secrets can decrypt them by using this key.
References
Link | Resource |
---|---|
https://www.cyberskydd.se/cve/2023/CVE-2023-33283.html | Exploit Third Party Advisory |
https://www.cyberskydd.se/cve/2023/CVE-2023-33283.html | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-06-07 20:15
Updated : 2025-01-07 16:15
NVD link : CVE-2023-33283
Mitre link : CVE-2023-33283
CVE.ORG link : CVE-2023-33283
JSON object : View
Products Affected
marvalglobal
- msm
CWE
CWE-326
Inadequate Encryption Strength