CVE Feed

    Dashboard / CVE / CVE-2023-49233

    CVE-2023-49233

    Insufficient access checks in Visual Planning Admin Center 8 before v.1 Build 240207 allow attackers in possession of a non-administrative Visual Planning account to utilize functions normally reserved for administrators. The affected functions allow attackers to obtain different types of configured credentials and potentially elevate their privileges to administrator level.

    Published:Sep 3, 2024
    Last Modified:Apr 15, 2026
    EPS:Sep 3, 2024
    EPSS Score:0.00108
    CVSS Score:8.8

    Affected Products

    Vendor
    Visual Planning
    Product
    Admin Center

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High