Relative path traversal in Setelsa Security ConacWin CB
Vulnerability Description
Relative path traversal vulnerability in Setelsa Security's ConacWin CB, in its 3.8.2.2 version and earlier, the exploitation of which could allow an attacker to perform an arbitrary download of files from the system via the "Download file" parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-3512
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Agustín Picazo (Black Giraffe)
More from Setelsa Security
View All →Affected Vendor
Setelsa Security
View all reports →