CVE-2023-32637
Bug #2102272 reported by
Bug Importer
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Simple Database Project |
Fix Released
|
High
|
Unassigned | ||
gbrowse (Ubuntu) |
New
|
High
|
Unassigned | ||
Trusty |
Won't Fix
|
High
|
Unassigned | ||
Xenial |
Won't Fix
|
High
|
Unassigned |
Bug Description
GBrowse accepts files with any formats uploaded and places them in the area
accessible through unauthenticated web requests. Therefore, anyone who can
upload files through the product may execute arbitrary code on the server.
References:
https:/
https:/
http://
https:/
CVE References
To post a comment you must log in.