CVE-2023-3765

CVSS 3.1 Score 10.0 of 10 (high)

Details

Published Jul 19, 2023
Updated: Jul 28, 2023
CWE ID 36

Summary

CVE-2023-3765 is a vulnerability categorized as "Absolute Path Traversal" in the GitHub repository mlflow/mlflow prior to version 2.5.0. This vulnerability affects multiple products including qiibyT, qiibyX, qiibyW, and qiibyV, among others. The risk score for this vulnerability is 69, indicating a high level of danger to organizations. To remediate the vulnerability, it is recommended to update the affected products to a version higher than 2.5.0. The base severity of this vulnerability is rated as "CRITICAL" with a base score of 10.0 according to [email protected], highlighting the significance of the issue in terms of confidentiality and integrity impact.

Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future

Note: This is just a basic overview providing quick insights into CVE-2023-3765 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
  • Gain complete coverage of your cyber, third party, and physical attack surface
  • Proactively mitigate threats before they turn into costly attacks
  • Make fast, effective, data-driven decisions