CVE-2023-37288

Publication date

2023-07-10 00:00:00

Family

twcert

State

PUBLISHED

Description

SmartBPM.NET component has a vulnerability of path traversal within its file download function. An unauthenticated remote attacker can exploit this vulnerability to access arbitrary system files.