CVE-2023-30945
26.06.2023, 23:15
Multiple Services such as VHS(Video History Server) and VCD(Video Clip Distributor) and Clips2 were discovered to be vulnerable to an unauthenticated arbitrary file read/write vulnerability due to missing input validation on filenames. A malicious attacker could read sensitive files from the filesystem or write/delete arbitrary files on the filesystem as well.
Vendor | Product | Version |
---|---|---|
palantir | clips2 | 𝑥 < 0.111.2 |
palantir | video_clip_distributor | 𝑥 < 0.24.10 |
palantir | video_history_service | 𝑥 < 2.210.3 |
𝑥
= Vulnerable software versions