PatchSiren

Yepas CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Yepas CVE published 2023-09-14

CVE-2023-4702

CVE-2023-4702 is a critical authentication bypass issue affecting Yepas Digital Yepas versions before 1.0.1. The NVD record classifies the flaw as an authentication bypass using an alternate path or channel and assigns a CVSS v3.1 score of 9.8 (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). For defenders, the main concern is that unauthenticated remote access could allow an attacker to bypass login controls and re [truncated]