CVE-2023-47440
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Dec 7, 2023
Updated: Dec 12, 2023
CWE ID 22
Summary
CVE-2023-47440 is a directory traversal vulnerability affecting Gladys Assistant version 4.27.0 and earlier. Despite the previous patch for CVE-2023-43256, this issue remains unresolved. Authenticated attackers can exploit this flaw to extract sensitive files from the host machine. The incomplete patch has left systems vulnerable to further attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share