Rewterz
Rewterz Threat Advisory – Multiple Apache InLong Vulnerabilities
January 4, 2024
Rewterz
Rewterz Threat Advisory – CVE-2023-40537 – F5 BIG-IP Vulnerability
January 4, 2024

Rewterz Threat Advisory – CVE-2023-6847 – GitHub Enterprise Server Vulnerability

Severity

High

Analysis Summary

CVE-2023-6847

GitHub Enterprise Server could allow a remote attacker to bypass security restrictions, caused by an improper authentication vulnerability. By using a specially crafted API request, an attacker could exploit this vulnerability to bypass authentication for public repository data.

Impact

  • Security Bypass

Indicators Of Compromise

CVE

  • CVE-2023-6847

Affected Vendors

GitHUB

Affected Products

  • GitHub Enterprise Server 3.9.6
  • GitHub Enterprise Server 3.10.3
  • GitHub Enterprise Server 3.11.0

Remediation

Refer to GitHub Docs Website for patch, upgrade or suggested workaround information.

GitHub Docs Website