CVE

CVE-2023-6354

Severity:
CRITICAL
Type:
CWE-287 Authentication Issues
Publication date:
30/11/2023
Last modified:
06/12/2023

Description

Tyler Technologies Magistrate Court Case Management Plus allows an unauthenticated, remote attacker to upload, delete, and view files by manipulating the PDFViewer.aspx &amp;#39;filename&amp;#39; parameter.<br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tylertech:court_case_management_plus:-:*:*:*:*:*:*:*