ZeroHour

CVE-2023-32637

CVSS 3.1
9.8 critical
EPSS
1%p64
Published
()
Modified
Description

GBrowse accepts files with any formats uploaded and places them in the area accessible through unauthenticated web requests. Therefore, anyone who can upload files through the product may execute arbitrary code on the server.

Vendors
gmod
Products
gbrowse
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.