Lucene search

K
cve[email protected]CVE-2023-26758
HistoryFeb 27, 2023 - 4:15 p.m.

CVE-2023-26758

2023-02-2716:15:13
CWE-22
web.nvd.nist.gov
23
cve-2023-26758
sme.up tokyo
v6r1m220406
arbitrary file download
resourceservice
nvd

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

0.002 Low

EPSS

Percentile

51.8%

Sme.UP TOKYO V6R1M220406 was discovered to contain an arbitrary file download vulnerabilty via the component /ResourceService.

Affected configurations

NVD
Node
smeuperpMatchtokyo_v6r1m220406
CPENameOperatorVersion
smeup:erpsmeup erpeqtokyo_v6r1m220406

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

0.002 Low

EPSS

Percentile

51.8%

Related for CVE-2023-26758