Security Advisory

CVE-2023-45685

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-10-16 16:08:25
Last updated 2024-09-16 14:48:25
Assigner rapid7
CVSS score not scored
State PUBLISHED

Description

Insufficient path validation when extracting a zip archive in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal