CVE-2023-20885
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jun 16, 2023
Updated: Dec 16, 2024
CWE ID 532
Summary
CVE-2023-20885 is a vulnerability affecting Cloud Foundry Notifications, SMB-volume release, and cf-nfs-volume release. Affected versions of Notifications are all prior to 63, SMB-volume release before 3.1.19, and cf-nfs-volume release 5.0.X before 5.0.27 and 7.1.X before 7.1.19. This issue poses a risk due to improper input validation, potentially leading to arbitrary code execution. Exploitation could result in unauthorized system access or data theft. Users are advised to apply relevant patches as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.