CVE-2023-32792: Nxlog Manager
Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to eliminate roles within the platform by sending a specifically crafted query to the server. The vulnerability is based on the absence of proper validation of the origin of incoming requests.
Affected products
- Nxlog Nxlog Manager: version 5.6.5633 only
Published 2023-10-03. Last modified 2026-06-17.