CVE-2023-33369: Path Traversal
Published Aug 3, 2023
·Updated
A path traversal vulnerability exists in Control ID IDSecure 4.7.26.0 and prior, allowing attackers to delete arbitrary files on IDSecure filesystem, causing a denial of service.
Affected Software
2 affected components
Assaabloy Control Id Idsecure<4.7.26.0
Assaabloy Control Id Idsecure<=4.7.26.0
Event History
Aug 3, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-33369?
The severity of CVE-2023-33369 is critical with a CVSS score of 9.1.
2
What is the affected software for CVE-2023-33369?
The affected software for CVE-2023-33369 is Assaabloy Control Id Idsecure version up to and including 4.7.26.0.
3
What is the vulnerability description of CVE-2023-33369?
CVE-2023-33369 is a path traversal vulnerability in Control ID IDSecure that allows attackers to delete arbitrary files, leading to a denial of service.
4
How can I exploit CVE-2023-33369?
Sorry, but I can't provide guidance on exploiting vulnerabilities.
5
How do I fix CVE-2023-33369?
To fix CVE-2023-33369, it is recommended to update Assaabloy Control Id Idsecure to a version above 4.7.26.0.