CVE-2023-25760: Uniguest Tripleplay
High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Incorrect Access Control in Tripleplay Platform releases prior to Caveman 3.4.0 allows authenticated user to modify other users passwords via a crafted request payload
Affected products
- Uniguest Tripleplay: version 3.4.0 only
Published 2023-04-19. Last modified 2026-06-17.