Vulnerability CVE-2023-44397


Published: 2023-10-30   Modified: 2023-10-31

Description:
CloudExplorer Lite is an open source, lightweight cloud management platform. Prior to version 1.4.1, the gateway filter of CloudExplorer Lite uses a controller with path starting with `matching/API/`, which can cause a permission bypass. Version 1.4.1 contains a patch for this issue.

Type:

CWE-287

(Improper Authentication)

 References:
https://github.com/CloudExplorer-Dev/CloudExplorer-Lite/security/advisories/GHSA-fqxr-7g94-vrfj

Copyright 2026, cxsecurity.com

 

Back to Top