CVE-2023-6900 - CERT CVE
ID CVE-2023-6900
Sažetak A vulnerability, which was classified as critical, has been found in rmountjoy92 DashMachine 0.5-4. Affected by this issue is some unknown functionality of the file /settings/delete_file. The manipulation of the argument file leads to path traversal: '../filedir'. The exploit has been disclosed to the public and may be used. VDB-248258 is the identifier assigned to this vulnerability.
Reference
CVSS
Base: 4.1
Impact: 4.9
Exploitability:5.1
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL PARTIAL
CVSS vektor AV:A/AC:L/Au:S/C:N/I:P/A:P
Zadnje važnije ažuriranje 20-12-2023 - 20:35
Objavljeno 17-12-2023 - 14:15