CVE-2023-22833

Palantir Foundry deployments running Lime2 versions between 2.519.0 and 2.532.0 were vulnerable a bug that allowed authenticated users within a Foundry organization to bypass discretionary or mandatory access controls under certain circumstances.
Configurations

Configuration 1 (hide)

cpe:2.3:a:palantir:foundry:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:45

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 7.6
References () https://palantir.safebase.us/?tcuUid=7f1fd834-805d-4679-85d0-9d779fa064ae - Vendor Advisory () https://palantir.safebase.us/?tcuUid=7f1fd834-805d-4679-85d0-9d779fa064ae - Vendor Advisory

Information

Published : 2023-06-06 19:15

Updated : 2024-11-21 07:45


NVD link : CVE-2023-22833

Mitre link : CVE-2023-22833

CVE.ORG link : CVE-2023-22833


JSON object : View

Products Affected

palantir

  • foundry
CWE
CWE-304

Missing Critical Step in Authentication

CWE-863

Incorrect Authorization