CVE-2023-34843

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jun 29, 2023
Updated: Jul 6, 2023
CWE ID 22

Summary

CVE-2023-34843 refers to a vulnerability in Traggo Server version 0.3.0. Hackers can exploit this weakness by crafting malicious GET requests, which may enable them to traverse directories and potentially access sensitive information or execute unauthorized commands. This issue poses a significant risk to organizations using this software, as it allows attackers to bypass access controls and gain unauthorized access to data. To mitigate this vulnerability, it is recommended that users upgrade to the latest version of Traggo Server or implement appropriate security measures, such as input validation and access controls.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share