CVE-2023-46263: Malicious File Upload
Published Dec 19, 2023
·Updated
An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remote code execution.
Affected Software
2 affected components
All of the following
Ivanti Avalanche<6.4.2
Microsoft Windows
Event History
Dec 19, 2023
CVE Published
03:43 PM
Data Sourced
03:43 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2023-46263?
CVE-2023-46263 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2023-46263?
To address CVE-2023-46263, upgrade Ivanti Avalanche to version 6.4.2 or newer.
3
What software is affected by CVE-2023-46263?
CVE-2023-46263 affects Ivanti Avalanche versions 6.4.1 and below.
4
What type of vulnerability is CVE-2023-46263?
CVE-2023-46263 is an unrestricted file upload vulnerability that can lead to remote code execution.
5
Can CVE-2023-46263 be exploited on all operating systems?
CVE-2023-46263 specifically impacts Ivanti Avalanche running on Microsoft Windows.