Severity
High
Analysis Summary
CVE-2023-26269
Apache James Server could allow a local attacker to gain elevated privileges on the system, caused by the provision of a JMX management service without authentication by default. An attacker could exploit this vulnerability to gain elevated privileges on the system.
Impact
- Privilege Escalation
Indicators Of Compromise
CVE
- CVE-2023-26269
Affected Vendors
Apache
Affected Products
- Apache James Server 3.7.3
Remediation
Upgrade to the latest version of James Server, available from the Apache Website.