Skip to content
COOEY

EXPOSURES › CVE-2023-33668

CVE-2023-33668

CRITICAL
DETAIL
SourceNVD · cve Published2023-07-12 CVSS9.8 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-33668 ↗
SHAME 35/100

DigiExam up to v14.0.2 lacks integrity checks for native modules, allowing attackers to access PII and takeover accounts on shared computers.

▸ RECOMMENDED ACTION  Critical severity — schedule patching of the affected products.

DESCRIPTION

DigiExam up to v14.0.2 lacks integrity checks for native modules, allowing attackers to access PII and takeover accounts on shared computers.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.