CVE-2023-30967: Gotham Orbital Simulator path traversal
Published Oct 25, 2023
·Updated
Gotham Orbital-Simulator service prior to 0.692.0 was found to be vulnerable to a Path traversal issue allowing an unauthenticated user to read arbitrary files on the file system.
Affected Software
1 affected component
Palantir Orbital Simulator<0.692.0
Event History
Oct 25, 2023
CVE Published
11:18 PM
Data Sourced
11:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2023-30967.
2
What is the severity of CVE-2023-30967?
The severity of CVE-2023-30967 is critical with a CVSS score of 9.8.
3
How does CVE-2023-30967 impact the Gotham Orbital-Simulator service?
CVE-2023-30967 allows an unauthenticated user to read arbitrary files on the file system, posing a significant security risk to the Gotham Orbital-Simulator service.
4
Which version of the Gotham Orbital-Simulator service is affected by CVE-2023-30967?
The Gotham Orbital-Simulator service prior to version 0.692.0 is affected by CVE-2023-30967.
5
Is authentication required to exploit CVE-2023-30967?
No, an unauthenticated user can exploit CVE-2023-30967.