CVE-2023-23752

[20230201] - Core - Improper access check in webservice endpoints

Basic Information

CVE State
PUBLISHED
Reserved Date
January 17, 2023
Published Date
February 16, 2023
Last Updated
August 04, 2024
Vendor
Joomla! Project
Product
Joomla! CMS
Description
An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

CVSS Scores

CVSS v3.1

5.3 - MEDIUM

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

SSVC Information

Exploitation
active
Automatable
Yes
Technical Impact
partial

Exploit Status

Exploited in the Wild
Yes (added 2024-01-08 00:00:00 UTC) Source
Proof of Concept Available
Yes (added 2023-11-28 16:08:16 UTC) Source

Known Exploited Vulnerability Information

Source Added Date
CISA 2024-01-08 00:00:00 UTC

Scanner Integrations

Potential Proof of Concepts

Warning: These PoCs have not been tested and could contain malware. Use at your own risk.

mil4ne/CVE-2023-23752-Joomla-v4.2.8

Type: github • Created: 2024-05-05 16:16:03 UTC • Stars: 5

0xWhoami35/CVE-2023-23752

Type: github • Created: 2024-04-11 13:39:44 UTC • Stars: 2

JohnDoeAnonITA/CVE-2023-23752

Type: github • Created: 2024-03-12 10:59:10 UTC • Stars: 3

CVE-2023-23752 Data Extractor

K3ysTr0K3R/CVE-2023-23752-EXPLOIT

Type: github • Created: 2023-12-04 13:05:08 UTC • Stars: 10

A PoC exploit for CVE-2023-23752 - Joomla Improper Access Check in Versions 4.0.0 through 4.2.7

Fernando-olv/Joomla-CVE-2023-23752

Type: github • Created: 2023-12-01 02:25:04 UTC • Stars: 4

This Python implementation serves an educational purpose by demonstrating the exploitation of CVE-2023-23752. The code provides insight into the vulnerability's exploitation.

Youns92/Joomla-v4.2.8---CVE-2023-23752

Type: github • Created: 2023-11-28 16:08:16 UTC • Stars: 3

CVE-2023-23752

Sweelg/CVE-2023-23752

Type: github • Created: 2023-06-16 07:53:22 UTC • Stars: 4

Joomla未授权访问漏洞

ThatNotEasy/CVE-2023-23752

Type: github • Created: 2023-04-09 13:20:48 UTC • Stars: 34

Perform With Mass Exploiter In Joomla 4.2.8.

adhikara13/CVE-2023-23752

Type: github • Created: 2023-04-04 21:14:19 UTC • Stars: 3

Poc for CVE-2023-23752

0xNahim/CVE-2023-23752

Type: github • Created: 2023-03-26 13:58:14 UTC • Stars: 5

karthikuj/CVE-2023-23752-Docker

Type: github • Created: 2023-03-25 06:18:46 UTC • Stars: 4

Joomla Unauthorized Access Vulnerability (CVE-2023-23752) Dockerized

Acceis/exploit-CVE-2023-23752

Type: github • Created: 2023-03-24 11:50:16 UTC • Stars: 83

Joomla! < 4.2.8 - Unauthenticated information disclosure

Jenderal92/Joomla-CVE-2023-23752

Type: github • Created: 2023-03-11 11:20:44 UTC • Stars: 0

python 2.7

gibran-abdillah/CVE-2023-23752

Type: github • Created: 2023-03-09 07:42:03 UTC • Stars: 8

Bulk scanner + get config from CVE-2023-23752

GhostToKnow/CVE-2023-23752

Type: github • Created: 2023-03-09 07:32:06 UTC • Stars: 2

开源,go多并发批量探测poc,准确率高

adriyansyah-mf/CVE-2023-23752

Type: github • Created: 2023-03-07 12:32:17 UTC • Stars: 0

keyuan15/CVE-2023-23752

Type: github • Created: 2023-03-01 15:28:24 UTC • Stars: 12

Joomla 未授权访问漏洞 CVE-2023-23752

z3n70/CVE-2023-23752

Type: github • Created: 2023-02-24 01:33:55 UTC • Stars: 16

simple program for joomla CVE-2023-23752 scanner for pentesting and educational purpose

ifacker/CVE-2023-23752-Joomla

Type: github • Created: 2023-02-23 04:37:31 UTC • Stars: 3

CVE-2023-23752 Joomla 未授权访问漏洞 poc

ibaiw/joomla_CVE-2023-23752

Type: github • Created: 2023-02-23 01:52:02 UTC • Stars: 2

未授权访问漏洞

Vulnmachines/joomla_CVE-2023-23752

Type: github • Created: 2023-02-20 10:30:17 UTC • Stars: 3

Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

Saboor-Hakimi/CVE-2023-23752

Type: github • Created: 2023-02-18 12:19:24 UTC • Stars: 2

CVE-2023-23752 nuclei template

yusinomy/CVE-2023-23752

Type: github • Created: 2023-02-18 03:36:54 UTC • Stars: 2

Joomla! 未授权访问漏洞