Vulnerability Description
Sysaid - CWE-552: Files or Directories Accessible to External Parties - Authenticated users may exfiltrate files from the server via an unspecified method.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sysaid | Sysaid On-Premises | < 23.2.14 |
Related Weaknesses (CWE)
References
- https://www.gov.il/en/Departments/faq/cve_advisoriesThird Party Advisory
- https://www.gov.il/en/Departments/faq/cve_advisoriesThird Party Advisory
FAQ
What is CVE-2023-32226?
CVE-2023-32226 is a vulnerability with a CVSS score of 8.3 (HIGH). Sysaid - CWE-552: Files or Directories Accessible to External Parties - Authenticated users may exfiltrate files from the server via an unspecified method.
How severe is CVE-2023-32226?
CVE-2023-32226 has been rated HIGH with a CVSS base score of 8.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-32226?
Check the references section above for vendor advisories and patch information. Affected products include: Sysaid Sysaid On-Premises.