CVE-2023-33756

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 8, 2023
Updated: Aug 14, 2023
CWE ID 22

Summary

CVE-2023-33756 is a vulnerability affecting Foswiki versions 2.1.7 and below. This issue resides in the SpreadSheetPlugin component, allowing attackers to execute a directory traversal. By manipulating specially crafted input, assailants can potentially gain unrestricted read access to sensitive files and data. This vulnerability poses a significant risk to systems running the affected Foswiki versions, and it is strongly recommended that users upgrade to a patched version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share