CVE-2023-3256: Advantech R-SeeNet External Control of File Name or Path
Advantech R-SeeNet versions 2.4.22 allows low-level users to access and load the content of local files.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Advantech R-SeeNetto a version that resolves this vulnerability.Fixed in 2.4.23
Event History
Frequently Asked Questions
What is CVE-2023-3256?
CVE-2023-3256 is a vulnerability in Advantech R-SeeNet versions 2.4.22 that allows low-level users to access and load the content of local files.
How severe is CVE-2023-3256?
CVE-2023-3256 has a severity score of 8.1 (high).
How does CVE-2023-3256 affect Advantech R-SeeNet?
CVE-2023-3256 affects Advantech R-SeeNet versions 2.4.22.
How can I fix CVE-2023-3256?
To fix CVE-2023-3256, it is recommended to update to a version of Advantech R-SeeNet that is not affected by the vulnerability.
Are there any references for CVE-2023-3256?
Yes, you can find more information about CVE-2023-3256 at the following reference: [CISA Advisory](https://www.cisa.gov/news-events/ics-advisories/icsa-23-173-02)