CVE-2023-34798: Malicious File Upload
Published Jul 25, 2023
·Updated
An arbitrary file upload vulnerability in eoffice before v9.5 allows attackers to execute arbitrary code via uploading a crafted file.
Affected Software
1 affected component
weaver E-Office<9.5
Event History
Jul 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-34798?
CVE-2023-34798 has a high severity level due to its potential for arbitrary code execution.
2
How do I fix CVE-2023-34798?
To fix CVE-2023-34798, update to Weaver E-office version 9.5 or later.
3
Who is affected by CVE-2023-34798?
CVE-2023-34798 affects all versions of Weaver E-office prior to v9.5.
4
What type of vulnerability is CVE-2023-34798?
CVE-2023-34798 is classified as an arbitrary file upload vulnerability.
5
What can attackers do with CVE-2023-34798?
Attackers can exploit CVE-2023-34798 to execute arbitrary code by uploading a crafted file.