Vulnerabilities (CVE)

Filtered by vendor Gladysassistant Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-47440 1 Gladysassistant 1 Gladys Assistant 2024-11-21 N/A 6.5 MEDIUM
Gladys Assistant v4.27.0 and prior is vulnerable to Directory Traversal. The patch of CVE-2023-43256 was found to be incomplete, allowing authenticated attackers to extract sensitive files in the host machine.
CVE-2023-43256 1 Gladysassistant 1 Gladys Assistant 2024-11-21 N/A 6.5 MEDIUM
A path traversal in Gladys Assistant v4.26.1 and below allows authenticated attackers to extract sensitive files in the host machine by exploiting a non-sanitized user input.