CVE-2023-31716: High severity frangoteam FUXA vulnerability
Published Sep 21, 2023
·Updated
FUXA <= 1.1.12 has a Local File Inclusion vulnerability via file=fuxa.log
Affected Software
2 affected components
frangoteam FUXA<=1.1.12
npm/@frangoteam/fuxa<=1.1.12
Event History
Sep 21, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Sep 22, 2023
Advisory Published
12:30 AM
Frequently Asked Questions
1
What is CVE-2023-31716?
CVE-2023-31716 is a Local File Inclusion vulnerability in FUXA version 1.1.12 and below.
2
How does the Local File Inclusion vulnerability in FUXA occur?
The Local File Inclusion vulnerability in FUXA occurs when an attacker is able to manipulate the 'file' parameter to include arbitrary files on the server.
3
What is the severity of CVE-2023-31716?
The severity of CVE-2023-31716 is high.
4
How can I fix the Local File Inclusion vulnerability in FUXA?
To fix the Local File Inclusion vulnerability in FUXA, it is recommended to update to a version above 1.1.12.
5
Where can I find more information about CVE-2023-31716?
You can find more information about CVE-2023-31716 on the NIST National Vulnerability Database (NVD) and GitHub.