CVE-2023-3675

CVSS 3.1 Score 8.0 of 10 (high)

Details

Published Apr 18, 2024
CWE ID 502

Summary

CVE-2023-3675 is a Path Traversal vulnerability affecting Secomea GateManager's Web GUI. The flaw, located in versions from 11.0.623074018 to 11.0.623373051, allows an attacker to read data from system resources by improperly limiting file pathnames. This issue poses a potential security risk as sensitive information could be accessed without proper authorization.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Exchange Server

Affected Vendors

  • Microsoft