Security Advisory

CVE-2023-6263

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-11-22 17:56:56
Last updated 2024-08-02 08:28:20
Assigner NX
State PUBLISHED

Description

An issue was discovered by IPVM team in Network Optix NxCloud before 23.1.0.40440. It was possible to add a fake VMS server to NxCloud by using the exact identification of a legitimate VMS server. As result, it was possible to retrieve authorization headers from legitimate users when the legitimate client connects to the fake VMS server.