CVE-2023-5257 - CERT CVE
ID CVE-2023-5257
Sažetak A vulnerability was found in WhiteHSBG JNDIExploit 1.4 on Windows. It has been rated as problematic. Affected by this issue is the function handleFileRequest of the file src/main/java/com/feihong/ldap/HTTPServer.java. The manipulation leads to path traversal. The exploit has been disclosed to the public and may be used. VDB-240866 is the identifier assigned to this vulnerability.
Reference
CVSS
Base: 2.7
Impact: 2.9
Exploitability:5.1
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE PARTIAL
CVSS vektor AV:A/AC:L/Au:S/C:N/I:N/A:P
Zadnje važnije ažuriranje 05-06-2024 - 21:15
Objavljeno 29-09-2023 - 11:15