Access Control Vulnerability in Cohesity DataProtect Products
CVE-2023-33295
6.5MEDIUM
What is CVE-2023-33295?
Cohesity DataProtect versions before 6.8.1_u5 and 7.1 are affected by a significant access control vulnerability. This issue arises from the absence of proper TLS Certificate Validation, which could allow unauthorized access to sensitive resources. Organizations utilizing these versions should prioritize updates to mitigate the risk of exploit.
