CVE-2023-22890: Malicious File Upload
SmartBear Zephyr Enterprise through 7.15.0 allows unauthenticated users to upload large files, which could exhaust the local drive space, causing a denial of service condition.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-22890?
CVE-2023-22890 is a vulnerability in SmartBear Zephyr Enterprise through 7.15.0 that allows unauthenticated users to upload large files, causing a denial of service condition.
What is the severity of CVE-2023-22890?
The severity of CVE-2023-22890 is high with a CVSS score of 7.5.
How does CVE-2023-22890 affect SmartBear Zephyr Enterprise?
CVE-2023-22890 affects SmartBear Zephyr Enterprise versions up to and including 7.15.0.
How can CVE-2023-22890 be exploited?
CVE-2023-22890 can be exploited by unauthenticated users who upload large files, leading to a denial of service condition.
Is there a fix for CVE-2023-22890?
Currently, there is no known fix for CVE-2023-22890. It is recommended to apply any security patches or updates provided by SmartBear.