CVE-2023-31716

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 22, 2023
Updated: Sep 25, 2023

Summary

CVE-2023-31716 is a newly disclosed vulnerability affecting FUXA software version 1.1.12 and below. The issue entails a Local File Inclusion (LFI) vulnerability, allowing an attacker to potentially gain unauthorized access to sensitive files by manipulating the 'file' parameter in a request to the fuxa.log file. Successful exploitation could lead to unintended system exposure or data disclosure. It is recommended that users upgrade to the latest version of FUXA to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share