Lucene search

K
cvelistMitreCVELIST:CVE-2023-26559
HistoryApr 14, 2023 - 12:00 a.m.

CVE-2023-26559

2023-04-1400:00:00
mitre
www.cve.org
2
directory traversal
oxygen xml web author
oxygen content fusion
vulnerability
http request
fixed versions

AI Score

5.4

Confidence

High

EPSS

0.003

Percentile

69.2%

A directory traversal vulnerability in Oxygen XML Web Author before 25.0.0.3 build 2023021715 and Oxygen Content Fusion before 5.0.3 build 2023022015 allows an attacker to read files from a WEB-INF directory via a crafted HTTP request. (XML Web Author 24.1.0.3 build 2023021714 and 23.1.1.4 build 2023021715 are also fixed versions.)

AI Score

5.4

Confidence

High

EPSS

0.003

Percentile

69.2%

Related for CVELIST:CVE-2023-26559