CVE-2023-38879

Publication date

2023-11-20 00:00:00

Family

mitre

State

PUBLISHED

Description

The Community Edition version 9.0 of OS4EDs openSIS Classic allows remote attackers to read arbitrary files via a directory traversal vulnerability in the filename parameter of DownloadWindow.php.