Man-in-the-Middle Vulnerability in Faronics Insight Software for Windows
CVE-2023-28348

7.4HIGH

Key Information:

Vendor

Faronics

Status
Vendor
CVE Published:
31 May 2023

What is CVE-2023-28348?

A vulnerability in Faronics Insight version 10.0.19045 for Windows allows attackers to execute man-in-the-middle (MitM) attacks. This could result in unauthorized interception of keystrokes from students or alterations of executable files being sent from teachers to students. The exploit requires the attacker to be strategically positioned within the network, raising significant concerns about the integrity of communications in educational environments using this software.

References

CVSS V3.1

Score:
7.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-28348 : Man-in-the-Middle Vulnerability in Faronics Insight Software for Windows