CVE-2023-29380

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published May 29, 2023
Updated: Jan 13, 2025
CWE ID 22

Summary

CVE-2023-29380 is a newly disclosed cybersecurity vulnerability affecting Warpinator before version 1.6.0. Hackers can exploit this issue by employing directory traversal techniques in top_dir_basenames, thereby enabling remote file deletion. This vulnerability poses a significant risk as it allows unauthorized deletion of crucial files, potentially leading to data loss or system compromise. Successful exploitation of CVE-2023-29380 can adversely impact the targeted system's stability and security. Users are strongly advised to update their Warpinator installations to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share