Unknown · Virtualreception Digital Receptie · CVE-2023-25289
**Name of the Vulnerable Software and Affected Versions**
virtualreception Digital Receptie version win7sp1 rtm.101119-1850 6.1.7601.1.0.65792
**Description**
The issue allows an attacker to gain sensitive information via a crafted GET request to the embedded web server, exploiting a Directory Traversal vulnerability.
**Recommendations**
For virtualreception Digital Receptie version win7sp1 rtm.101119-1850 6.1.7601.1.0.65792, consider restricting access to the embedded web server as a temporary mitigation measure until a patch is available. Avoid using the embedded web server for sensitive operations until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.