CVE-2023-5097: Input Validation
Published Jan 16, 2024
·Updated
Improper Input Validation vulnerability in HYPR Workforce Access on Windows allows Path Traversal.This issue affects Workforce Access: before 8.7.
Affected Software
2 affected components
All of the following
HYPR Workforce Access<8.7
Microsoft Windows
Event History
Jan 16, 2024
CVE Published
via MITRE·07:40 PM
Data Sourced
via MITRE·07:40 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-5097?
The severity of CVE-2023-5097 is currently rated as critical due to improper input validation that allows path traversal.
2
How do I fix CVE-2023-5097?
To fix CVE-2023-5097, update your HYPR Workforce Access to version 8.7 or later.
3
Which versions of HYPR Workforce Access are affected by CVE-2023-5097?
CVE-2023-5097 affects all versions of HYPR Workforce Access before version 8.7.
4
What does the path traversal vulnerability in CVE-2023-5097 allow?
The path traversal vulnerability in CVE-2023-5097 allows unauthorized access to file system directories.
5
Is Microsoft Windows affected by CVE-2023-5097?
No, Microsoft Windows itself is not vulnerable but the issue exists in the HYPR Workforce Access running on Windows.