CVE-2023-23752: Joomla! Webservice - Password Disclosure

HoneyLabs honeypots recorded 10 probes matching CVE-2023-23752 from 2 distinct source IP addresses in the last 7 days. Severity is rated medium.

This CVE is on CISA's Known Exploited Vulnerabilities list.

Request paths that identify it

  • /api/v1/config/application
  • /api/index.php/v1/config/application

Addresses probing it

Source IPProbesNetworkCountry
130.12.180.776Omegatech LTDThe Netherlands
45.148.10.1834Techoff Srv LimitedThe Netherlands

Networks it comes from

ASNOrganisationProbesSource IPs
AS202412Omegatech LTD61
AS48090Techoff Srv Limited41

Captured requests

  • /api/v1/config/application?public=true
  • /api/index.php/v1/config/application

HTTP client fingerprints (JA4H)

  • ge11nn0200_fdb5000be5f4
  • ge11nn0300_042112399351

CVE report

CVE report

Open a specific CVE from the CVE tracker.