An arbitrary file upload vulnerability in Xpand IT Write-back Manager v2.3.1 allows attackers to execute arbitrary code via a crafted jsp file.
References
Link | Resource |
---|---|
https://balwurk.com | Not Applicable |
https://balwurk.github.io/CVE-2023-27168/ | Exploit Third Party Advisory |
https://writeback4t.com | Not Applicable |
https://www.xpand-it.com | Product |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2024-01-19T00:00:00
Updated: 2024-01-19T13:37:03.007257
Reserved: 2023-02-27T00:00:00
Link: CVE-2023-27168
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-01-19T14:15:12.247
Modified: 2024-01-25T17:23:30.823
Link: CVE-2023-27168
JSON object: View
Redhat Information
No data.
CWE