Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Agustín Picazo

#34696of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2023-25151
7.5
2023-10-04
Unknown · Conacwin Cb · CVE-2023-3512
**Name of the Vulnerable Software and Affected Versions** ConacWin CB versions 3.8.2.2 and earlier **Description** The issue is a relative path traversal vulnerability that could allow an attacker to perform an arbitrary download of files from the system via the `Download file` parameter. **Recommendations** For ConacWin CB versions 3.8.2.2 and earlier, consider restricting access to the `Download file` parameter until a patch is available. As a temporary workaround, avoid using the `Download file` parameter in the affected system to minimize the risk of exploitation.