CVE-2023-27745

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Jun 2, 2023
Updated: Jan 9, 2025
CWE ID 346

Summary

CVE-2023-27745 is a vulnerability affecting South River Technologies TitanFTP before version 2.0.1.2102. This issue grants low-privileged attackers the ability to execute administrative actions on the user server by sending specific requests. The exploitation of this vulnerability could potentially result in unauthorized modification, deletion, or creation of files, as well as other system-level actions. The implications of this vulnerability are significant, as it allows attackers to bypass the intended access control measures, potentially leading to data breaches or system compromises. It is strongly recommended that TitanFTP users upgrade to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share