CVE-2023-3701

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Oct 4, 2023
Updated: Oct 5, 2023
CWE ID 23
CWE ID 22

Summary

CVE-2023-3701 is a vulnerability affecting Aqua Drive's 2.4 version. It allows authenticated, non-privileged users to traverse relative paths and access or modify resources belonging to other users. This issue can potentially lead to unintended changes to stored files, including source and configuration files of the cloud disk platform, which could compromise the platform's integrity and availability in its entirety.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share