CVE-2023-46263

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
19/12/2023
Last modified:
21/12/2023

Description

An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remote code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ivanti:avalanche:*:*:*:*:premise:*:*:* 6.4.2 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*