Jaspersoft Clarity PPM version 14.3.0.298 was discovered to contain an arbitrary file upload vulnerability via the Profile Picture Upload function.
References
Link | Resource |
---|---|
https://packetstormsecurity.com/files/173508/Clarity-PPM-14.3.0.298-Cross-Site-Scripting.html | Exploit Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-11-08T00:00:00
Updated: 2023-11-08T23:41:45.954129
Reserved: 2023-07-10T00:00:00
Link: CVE-2023-37790
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-09T00:15:08.037
Modified: 2023-11-16T16:44:00.420
Link: CVE-2023-37790
JSON object: View
Redhat Information
No data.
CWE