ZeroHour

CVE-2023-45912

PoC
CVSS 3.1
7.5 high
EPSS
<1%p49
Published
()
Modified
Description

WIPOTEC GmbH ComScale v4.3.29.21344 and v4.4.12.723 fails to validate user sessions, allowing unauthenticated attackers to read files from the underlying operating system and obtain directory listings.

Vendors
wipotec
Products
comscale
Weakness
CWE-200
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.