CVE-2023-48373

Publication date

2023-12-15 04:27:26

Family

twcert

State

PUBLISHED

Description

ITPison OMICARD EDM has a path traversal vulnerability within its parameter “FileName” in a specific function. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files.