CVE-2023-3675: Insufficient input validation when downloading certain file types.
Published Apr 18, 2024
·Updated
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Secomea GateManager (Web GUI) allows Reading Data from System Resources.This issue affects GateManager: from 11.0.623074018 before 11.0.623373051.
Affected Software
1 affected component
Secomea GateManager>11.0.623074018, <11.0.623373051
Event History
Apr 18, 2024
CVE Published
via MITRE·10:41 AM
Data Sourced
via MITRE·10:41 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-3675?
CVE-2023-3675 has been designated a critical severity due to its potential for unauthorized data access.
2
How do I fix CVE-2023-3675?
To mitigate CVE-2023-3675, update Secomea GateManager to version 11.0.623373051 or later.
3
What systems are affected by CVE-2023-3675?
CVE-2023-3675 affects Secomea GateManager versions from 11.0.623074018 before 11.0.623373051.
4
What type of vulnerability is CVE-2023-3675?
CVE-2023-3675 is classified as a Path Traversal vulnerability.
5
What impact does CVE-2023-3675 have on security?
CVE-2023-3675 allows attackers to read sensitive data from system resources, posing a significant security risk.