go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

NetVision Information airPASS - Path Traversal

TVN ID TVN-202312012
CVE ID CVE-2023-48383
CVSS 7.5 (High)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Products airPASS v2.9.0.200703
Description NetVision Information airPASS has a path traversal vulnerability within its parameter in a specific URL. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files.
Solution Update to v2.9.0.231006 or latest version.
Credit Security member
Public Date 2023-12-15
Top