Threats Tagged 'cwe-523'
View all threats tagged with 'cwe-523'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-523'
Click on any threat for detailed analysis and mitigation recommendations
0 HCL IEM was affected with Strict transport security not enforced. It may enable attackers to perform SSL stripping or man-in-the-middle attacks and compromise secure communications. Join the discussion | CVE Database V5 | 07/21/2026, 14:36:53 UTC Added: 07/21/2026, 14:42:53 UTC |
A static credential embedded in Chef 360 prior to v1.7.0 permitted unauthenticated access to internal message queues. Queue messages contained tenant-specific identifiers. The credential has been rotated and replaced with per-tenant access in subsequent versions, eliminating this access method entirely. Join the discussion | CVE Database V5 | 06/18/2026, 21:19:18 UTC Added: 06/18/2026, 22:06:01 UTC |
SIP signaling stack in Verizon IMS (unspecified version) implements SIP signaling without IPsec integrity protection (missing Security-Client/Security-Server headers and ESP traffic), which allows an on-path attacker to compromise confidentiality, integrity, and authenticity of VoLTE signaling via passive monitoring and active manipulation of unsecured SIP messages over the radio and core network. Join the discussion | CVE Database V5 | 06/02/2026, 14:35:07 UTC Added: 06/02/2026, 15:48:50 UTC |
0 Unprotected transport of credentials vulnerability in syslink software AG Avantra on Linux, Windows allows Sniffing Attacks. This issue affects Avantra: before 25.3.0. Join the discussion | CVE Database V5 | 05/22/2026, 13:18:16 UTC Added: 05/22/2026, 13:44:51 UTC |
0 Kiteworks is a private data network (PDN). In Kiteworks Secure Data Forms prior to version 9.2.1, a misconfiguration of the security attributes could potentially lead to Unprotected Transport of Credentials under certain circumstances. Upgrade Kiteworks to version 9.2.1 or later to receive a patch. Join the discussion | CVE Database V5 | 03/25/2026, 16:57:19 UTC Added: 03/25/2026, 17:15:52 UTC |
Open OnDemand provides remote web access to supercomputers. In versions 4.0.8 and prior, the Apache proxy allows sensitive headers to be passed to origin servers. This means malicious users can create an origin server on a compute node that record these headers when unsuspecting users connect to it. Maintainers anticipate a patch in a 4.1 release. Workarounds exist for 4.0.x versions. Using `custom_location_directives` in `ood_portal.yml` in version 4.0.x (not available for versions below 4.0) centers can unset and or edit these headers. Note that `OIDCPassClaimsAs both` is the default and centers can set `OIDCPassClaimsAs ` to `none` or `environment` to stop passing these headers to the client. Centers that have an OIDC provider with the `OIDCPassClaimsAs` with `none` or `environment` settings can adjust the settings using guidance provided in GHSA-2cwp-8g29-9q32 to unset the mod_auth_openidc_session cookies. Join the discussion | CVE Database V5 | 12/17/2025, 22:32:51 UTC Added: 12/17/2025, 22:45:14 UTC |
0 The affected product discloses device telemetry, configuration, and sensitive information via WebSocket traffic to unauthenticated users when they connect to a specific URL. The unauthenticated URL can be discovered through basic network scanning techniques. Join the discussion | CVE Database V5 | 11/14/2025, 23:41:18 UTC Added: 11/14/2025, 23:51:34 UTC |
0 The Brightpick Mission Control web application exposes hardcoded credentials in its client-side JavaScript bundle to Brightpick AI's documentation portal. Join the discussion | CVE Database V5 | 11/14/2025, 23:38:48 UTC Added: 11/14/2025, 23:51:34 UTC |
0 An unauthenticated remote attacker (MITM) can intercept the websocket messages to gain access to the login credentials for the Webfrontend. Join the discussion | CVE Database V5 | 10/14/2025, 08:05:43 UTC Added: 10/14/2025, 08:45:17 UTC |
0 Audiobookshelf is an open-source self-hosted audiobook server. In versions 2.6.0 through 2.26.3, the application does not properly restrict redirect callback URLs during OIDC authentication. An attacker can craft a login link that causes Audiobookshelf to store an arbitrary callback in a cookie, which is later used to redirect the user after authentication. The server then issues a 302 redirect to the attacker-controlled URL, appending sensitive OIDC tokens as query parameters. This allows an attacker to obtain the victim's tokens and perform full account takeover, including creating persistent admin users if the victim is an administrator. Tokens are further leaked via browser history, Referer headers, and server logs. This vulnerability impacts all Audiobookshelf deployments using OIDC; no IdP misconfiguration is required. The issue is fixed in version 2.28.0. No known workarounds exist. Join the discussion | CVE Database V5 | 08/22/2025, 17:02:04 UTC Added: 08/22/2025, 17:17:47 UTC |
Showing 1 to 10 of 11 results