Security Advisory

CVE-2023-39421

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-09-07 12:19:18
Last updated 2024-09-26 19:30:24
Assigner Bitdefender
CVSS score 7.7
State PUBLISHED

Description

The RDPWin.dll component as used in the IRM Next Generation booking engine includes a set of hardcoded API keys for third-party services such as Twilio and Vonage. These keys allow unrestricted interaction with these services.