CVE-2024-7323

Publication date

2024-08-02 10:36:51

Family

twcert

State

PUBLISHED

Description

Digiwin EasyFlow .NET lacks proper access control for specific functionality, and the functionality do not adequately filter user input. A remote attacker with regular privilege can exploit this vulnerability to download arbitrary files from the remote server .