PT-2023-19370 · Ipswitch · Ws Ftp Server

CVE-2023-24029

·

Publicado

2023-02-03

·

Atualizado

2023-02-12

CVSS v3.1

7.2

Alta

VetorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WS FTP Server versions prior to 8.8
Description The issue allows a host administrator to elevate their privileges via the administrative interface due to insufficient authorization controls applied on user modification workflows.
Recommendations For WS FTP Server versions prior to 8.8, update to version 8.8 or later to resolve the issue.

Correção

Incorrect Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-24029

Produtos afetados

Ws Ftp Server