An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remove code execution.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: hackerone

Published: 2023-12-19T15:43:26.340Z

Updated: 2023-12-19T15:43:26.340Z

Reserved: 2023-10-20T01:00:13.075Z


Link: CVE-2023-46264

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-12-19T16:15:11.493

Modified: 2023-12-21T04:49:27.650


Link: CVE-2023-46264

JSON object: View

cve-icon Redhat Information

No data.

CWE