https://seclists.org/oss-sec/2023/q3/93: Foswiki-2.1.8 has been released
Published Aug 7, 2023
·Updated
Affected Software
1 affected component
Foswiki Foswiki
Frequently Asked Questions
1
What is the severity of CVE-2023-33756?
CVE-2023-33756 is classified as a critical vulnerability due to its potential to expose sensitive server information.
2
What is the impact of CVE-2023-24698?
CVE-2023-24698 is a local file inclusion vulnerability that can allow unauthorized access to files on the server.
3
How do I fix CVE-2023-33756?
To fix CVE-2023-33756, it is recommended to update Foswiki to the latest version 2.1.8.
4
How do I fix CVE-2023-24698?
Fix CVE-2023-24698 by updating to Foswiki version 2.1.8 or applying the appropriate security patches.
5
What versions of Foswiki are affected by these vulnerabilities?
Foswiki versions prior to 2.1.8 are affected by CVE-2023-33756 and CVE-2023-24698.