CVE-2023-51749
HIGHDescription
ScaleFusion 10.5.2 does not properly limit users to the Edge application because a search can be made from a tooltip. NOTE: the vendor's position is "Not vulnerable if the default Windows device profile configuration is used which utilizes modern management with website allow-listing rules."
Is your site exposed to CVE-2023-51749?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| scalefusion | scalefusion |
References
Exploits
Frequently Asked Questions
What is CVE-2023-51749? +
How severe is CVE-2023-51749? +
What products are affected by CVE-2023-51749? +
How do I check if I'm vulnerable to CVE-2023-51749? +
Related Vulnerabilities
In ScaleFusion (Windows Desktop App) agent 10.5.2, Kiosk mode application restrictions can be bypassed allowing arbitrary code to be executed. …
ScaleFusion 10.5.2 does not properly limit users to the Edge application because Ctrl-O and Ctrl-S can be used. This is …
ScaleFusion 10.5.2 does not properly limit users to the Edge application because Alt-F4 can be used. This is fixed in …
ScaleFusion 10.5.2 does not properly limit users to the Edge application because file downloads can occur. NOTE: the vendor's position …