Beveiligingsadvies

CVE-2023-30945

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-06-26 23:00:08
Laatst bijgewerkt 2024-12-05 14:30:12
Toegewezen door Palantir
CVSS-score 9.8
Status PUBLISHED

Beschrijving

Multiple Services such as VHS(Video History Server) and VCD(Video Clip Distributor) and Clips2 were discovered to be vulnerable to an unauthenticated arbitrary file read/write vulnerability due to missing input validation on filenames. A malicious attacker could read sensitive files from the filesystem or write/delete arbitrary files on the filesystem as well.