THREATOPS
THREAT OPSThreat News › [NVD] CVE-2023-47246 (CRITICAL 9.8) — In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023.

[NVD] CVE-2023-47246 (CRITICAL 9.8) — In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023.

lownvdPublished 2023-11-10

CVE-2023-47246 CVSS: 9.8 CRITICAL Published: 2023-11-10T06:15:30.510

In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2023-47246