CVE-2023-47440

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 7, 2023
Updated: Dec 12, 2023
CWE ID 22

Summary

CVE-2023-47440 is a directory traversal vulnerability affecting Gladys Assistant version 4.27.0 and earlier. Despite the previous patch for CVE-2023-43256, this issue remains unresolved. Authenticated attackers can exploit this flaw to extract sensitive files from the host machine. The incomplete patch has left systems vulnerable to further attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share