Fiche vulnérabilité
CVE-2023-41137 : faille critique appsanywhere appsanywhere client (CVSS 9.8)
Description
Symmetric encryption used to protect messages between the AppsAnywhere server and client can be broken by reverse engineering the client and used to impersonate the AppsAnywhere server.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 9 nov. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- appsanywhere appsanywhere client