CVE-2023-41973
Severity CVSS v4.0:
Pending analysis
Type:
CWE-22
Path Traversal
Publication date:
26/03/2024
Last modified:
26/03/2024
Description
ZSATray passes the previousInstallerName as a config parameter to TrayManager, and TrayManager constructs the path and appends previousInstallerName to get the full path of the exe. Fixed Version: Win ZApp 4.3.0.121 and later.<br />
Impact
Base Score 3.x
7.30
Severity 3.x
HIGH