First published: Fri May 05 2023(Updated: )
External Control of File Name or Path in GitHub repository unilogies/bumsys prior to 2.2.0.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Bumsys Project Bumsys | <2.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-2554 is classified as a high-severity vulnerability due to the potential for external control of file names or paths.
To fix CVE-2023-2554, update to version 2.2.0 or later of the Bumsys project.
CVE-2023-2554 affects all versions of the Bumsys project prior to version 2.2.0.
CVE-2023-2554 is an external control of file name or path vulnerability.
Yes, mitigation is needed by upgrading to the fixed version to protect against potential exploitation.