Security Advisory

CVE-2023-45685

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-16 16:08:25
Last updated 2024-09-16 14:48:25
Assigner rapid7
State PUBLISHED

Description

Insufficient path validation when extracting a zip archive in South River Technologies Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal