CVE-2023-6263
EUVD-2023-5850822.11.2023, 18:15
An issue was discovered by IPVM team in Network Optix NxCloud before 23.1.0.40440. It was possible to add a fake VMS server to NxCloud by using the exact identification of a legitimate VMS server. As result, it was possible to retrieve authorization headers from legitimate users when the legitimate client connects to the fake VMS server.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| networkoptix | nxcloud | 𝑥 < 23.1.0.40440 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration