CVE-2023-33756
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Aug 8, 2023
Updated: Aug 14, 2023
CWE ID 22
Summary
CVE-2023-33756 is a vulnerability affecting Foswiki versions 2.1.7 and below. This issue resides in the SpreadSheetPlugin component, allowing attackers to execute a directory traversal. By manipulating specially crafted input, assailants can potentially gain unrestricted read access to sensitive files and data. This vulnerability poses a significant risk to systems running the affected Foswiki versions, and it is strongly recommended that users upgrade to a patched version as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Foswiki
Affected Vendors
- Foswiki