ZeroHour

CVE-2023-42248

CVSS 3.1
6.5 medium
EPSS
<1%p29
Published
()
Modified
Description

An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can write arbitrary files by manipulating POST parameters of the page "common/vam_Sql.php".

Vendors
seling
Products
visual access manager
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.