Aller au contenu

Fiche vulnérabilité

CVE-2023-46745 : faille élevée librenms librenms (CVSS 7.5)

Description

LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring which includes support for a wide range of network hardware and operating systems. In affected versions the login method has no rate limit. An attacker may be able to leverage this vulnerability to gain access to user accounts. This issue has been addressed in version 23.11.0. Users are advised to upgrade. There are no known workarounds for this vulnerability.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitation active
Non signalée par la CISA
Publication
17 nov. 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • librenms librenms

Références

Rechercher une autre vulnérabilité dans la base CVE