Multiple vulnerabilities in IDM Sistemas QSige
Vulnerability Description
The file upload functionality is not implemented correctly and allows uploading of any type of file. As a prerequisite, it is necessary for the attacker to log into the application with a valid username.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-4097
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Pablo Arias Rodríguez, Jorge Alberto Palma Reyes and Rubén Barberá Pérez.
References
More from IDM Sistemas QSige
View All →Affected Vendor
IDM Sistemas QSige
View all reports →