cve/2023/CVE-2023-23128.md
2024-05-28 08:49:17 +00:00

916 B

CVE-2023-23128

Description

** DISPUTED **Connectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendor's position is that two endpoints have Access-Control-Allow-Origin wildcarding to support product functionality, and that there is no risk from this behavior. The vulnerability report is thus not valid.

POC

Reference

No PoCs from references.

Github