CVE-2023-32225

Sysaid - CWE-434: Unrestricted Upload of File with Dangerous Type -  A malicious user with administrative privileges may be able to upload a dangerous filetype via an unspecified method.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:sysaid:sysaid_on-premises:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:02

Type Values Removed Values Added
References () https://www.gov.il/en/Departments/faq/cve_advisories - Third Party Advisory () https://www.gov.il/en/Departments/faq/cve_advisories - Third Party Advisory
CVSS v2 : unknown
v3 : 7.2
v2 : unknown
v3 : 9.8

03 Aug 2023, 20:46

Type Values Removed Values Added
First Time Sysaid
Sysaid sysaid On-premises
References (MISC) https://www.gov.il/en/Departments/faq/cve_advisories - (MISC) https://www.gov.il/en/Departments/faq/cve_advisories - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.2
CWE CWE-434
CPE cpe:2.3:a:sysaid:sysaid_on-premises:*:*:*:*:*:*:*:*

30 Jul 2023, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-30 08:15

Updated : 2024-11-21 08:02


NVD link : CVE-2023-32225

Mitre link : CVE-2023-32225

CVE.ORG link : CVE-2023-32225


JSON object : View

Products Affected

sysaid

  • sysaid_on-premises
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type