CVE-2023-42248

Publication date

2025-01-13 00:00:00

Family

mitre

State

PUBLISHED

Description

An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can write arbitrary files by manipulating POST parameters of the page "common/vam_Sql.php".