PT-2024-12875 · Atos · Atos Unify Openscape Xpressions Webassistant

Published

2024-02-08

·

Updated

2024-02-15

·

CVE-2023-40265

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Atos Unify OpenScape Xpressions WebAssistant versions prior to V7R1 FR5 HF42 P911
Description An issue in Atos Unify OpenScape Xpressions WebAssistant allows authenticated remote code execution via file upload.
Recommendations For versions prior to V7R1 FR5 HF42 P911, update to V7R1 FR5 HF42 P911 or later to resolve the issue.

Fix

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2023-40265

Affected Products

Atos Unify Openscape Xpressions Webassistant