Back to Database
Status published
Medium
CVE-2023-6354
Tyler Technologies Magistrate Court Case Management Plus PDFViewer.aspx allows authentication bypass
Vulnerability Description
Tyler Technologies Magistrate Court Case Management Plus allows an unauthenticated, remote attacker to upload, delete, and view files by manipulating the PDFViewer.aspx 'filename' parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-6354
Credits & Attribution
No credits recorded in the NVD database.
References
- https://www.tylertech.com/solutions/courts-public-safety/courts-justice
- https://github.com/qwell/disorder-in-the-court/blob/main/README-TylerTechnologies.md
- https://techcrunch.com/2023/11/30/us-court-records-systems-vulnerabilities-exposed-sealed-documents/
- https://www.cisa.gov/news-events/alerts/2023/11/30/multiple-vulnerabilities-affecting-web-based-court-case-and-document-management-systems
More from Tyler Technologies
View All →CVE-2025-55077
Tyler Technologies ERP Pro 9 SaaS application escape
Medium
5.3
CVE-2023-6375
Tyler Technologies Magistrate Court Case Management Plus stores backups insecurely
Medium
5.3
CVE-2023-6353
Tyler Technologies Civil and Criminal Electronic Filing Upload.aspx allows authentication bypass
Medium
5.3
CVE-2023-6344
Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server te003.aspx and te004.aspx allows authentication bypass
Medium
5.3
CVE-2023-6343
Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server tssp.aspx allows authentication bypass
Medium
5.3
Affected Vendor
Tyler Technologies
View all reports →Affected Software
Magistrate Court Case Management Plus
Vulnerable Versions:
0
Timeline
Official Publish:
November 30th, 2023
Last Modified:
August 2nd, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N