CVE-2023-6569
EUVD-2023-321514.12.2023, 13:15
External Control of File Name or Path in h2oai/h2o-3Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| h2o | h2o | 3.40.0.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-73 - External Control of File Name or PathThe software allows user input to control or influence paths or file names that are used in filesystem operations.
- CWE-610 - Externally Controlled Reference to a Resource in Another SphereThe product uses an externally controlled name or reference that resolves to a resource that is outside of the intended control sphere.