CVE-2023-45685

Publication date

2023-10-16 16:08:25

Family

rapid7

State

PUBLISHED

Description

Insufficient path validation when extracting a zip archive in South River Technologies Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal