CVE-2023-25264
28.02.2023, 16:15
An issue was discovered in Docmosis Tornado prior to version 2.9.5. An unauthenticated attacker can bypass the authentication check filter completely by introducing a specially crafted request with relative path segments.Enginsight
Vendor | Product | Version |
---|---|---|
docmosis | tornado | 𝑥 < 2.9.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References