๐Ÿ” CVE Alert

CVE-2023-2881

MEDIUM 6.7

Storing Passwords in a Recoverable Format in pimcore/customer-data-framework

CVSS Score
6.7
EPSS Score
0.0%
EPSS Percentile
0th

Storing Passwords in a Recoverable Format in GitHub repository pimcore/customer-data-framework prior to 3.3.10.

CWE CWE-257
Vendor pimcore
Product pimcore/customer-data-framework
Published May 25, 2023
Last Updated Jan 16, 2025
Stay Ahead of the Next One

Get instant alerts for pimcore pimcore/customer-data-framework

Be the first to know when new medium vulnerabilities affecting pimcore pimcore/customer-data-framework are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:H

Affected Versions

pimcore / pimcore/customer-data-framework
unspecified < 3.3.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
huntr.dev: https://huntr.dev/bounties/db6c32f4-742e-4262-8fd5-cefd0f133416 github.com: https://github.com/pimcore/customer-data-framework/commit/d1d58c10313f080737dc1e71fab3beb12488a1e6