Security Advisory

CVE-2023-45277

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-19 00:00:00
Last updated 2024-08-02 20:14:19
Assigner mitre
State PUBLISHED

Description

Yamcs 5.8.6 is vulnerable to directory traversal (issue 1 of 2). The vulnerability is in the storage functionality of the API and allows one to escape the base directory of the buckets, freely navigate system directories, and read arbitrary files.