9.8
CVSSv3

CVE-2023-30803

Published: 10/10/2023 Updated: 13/10/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an authentication bypass vulnerability. A remote and unauthenticated attacker can bypass authentication and access administrative functionality by sending HTTP requests using a crafted Y-forwarded-for header.

Vulnerable Product Search on Vulmon Subscribe to Product

sangfor next-gen application firewall 8.0.17

Vendor Advisories

Check Point Reference: CPAI-2023-1371 Date Published: 18 Dec 2023 Severity: Critical ...