CVE-2023-3701
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Oct 4, 2023
Updated: Oct 5, 2023
CWE ID 23
CWE ID 22
Summary
CVE-2023-3701 is a vulnerability affecting Aqua Drive's 2.4 version. It allows authenticated, non-privileged users to traverse relative paths and access or modify resources belonging to other users. This issue can potentially lead to unintended changes to stored files, including source and configuration files of the cloud disk platform, which could compromise the platform's integrity and availability in its entirety.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.