Xpand IT Write-back manager v2.3.1 allows attackers to perform a directory traversal via modification of the siteName parameter.
High CVSS 7.5
Summary
Xpand IT Write-back manager v2.3.1 allows attackers to perform a directory traversal via modification of the siteName parameter.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://balwurk.com/cve-2023-27170-improper-limitation-of-a-pathname-to-a-restricted-directory/ Exploit
- https://ghostline.neocities.org/CVE-2023-27170/
- https://balwurk.com/cve-2023-27170-improper-limitation-of-a-pathname-to-a-restricted-directory/ Exploit
Timeline
- nvd_ingest NVD