← Back

CVE-2023-6407

nvd nist
Published: Dec 14, 2023Modified: Nov 21, 2024

JSON object

Loading...
7.1
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Exploitability: 1.8 / Impact: 5.2
Source: NVD

Description

A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause arbitrary file deletion upon service restart when accessed by a local and low-privileged attacker.

Affected (1)

Configuration A
1 vulnerable · 7 platform
Vulnerable SoftwareAffected Versions
Before 2.6-ga-01-23248
Running on/withPlatform Versions
Microsoft
Windows 10 1507
All versions
Microsoft
Windows 10 1507
All versions
Microsoft
Windows 11 21h2
All versions
Microsoft
Windows 11 21h2
All versions
Microsoft
Windows Server 2016
All versions
Microsoft
Windows Server 2019
All versions
Microsoft
Windows Server 2022
All versions

Timeline

No history available yet.