CVE-2023-33264
Description
In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the member configuration properly. This allows Hazelcast Management Center users to view some of the secrets.
NVD
Severity: MEDIUM
CVE ID: CVE-2023-33264
CVSS Score: 4.3
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Proof Of Concept
miguelc49
Refrence: GitHub
miguelc49
Refrence: GitHub
miguelc49
Refrence: GitHub