Description
Insufficient path validation when extracting a zip archive in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-49974 | Insufficient path validation when extracting a zip archive in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal |
References
History
No history.
Status: PUBLISHED
Assigner: rapid7
Published:
Updated: 2024-09-16T14:48:25.595Z
Reserved: 2023-10-10T19:07:28.770Z
Link: CVE-2023-45685
Updated: 2024-08-02T20:29:32.564Z
Status : Modified
Published: 2023-10-16T17:15:09.963
Modified: 2024-11-21T08:27:13.023
Link: CVE-2023-45685
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD