CVE-2023-48185

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 17, 2023
Updated: Dec 2, 2023
CWE ID 22

Summary

CVE-2023-48185 is a newly identified vulnerability affecting TerraMaster versions 1.0 to 2.295. This issue involves a Directory Traversal flaw that can be exploited by remote attackers. By sending a carefully crafted GET request, they can gain unauthorized access to sensitive information stored on the affected system. The vulnerability poses a significant risk, as it allows attackers to bypass access controls and potentially steal confidential data. It is essential that users update to the latest, secure version of TerraMaster to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share