Vulnerability Details CVE-2023-26578
Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.1%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-26578
-
cpe:2.3:a:idattend:idweb:3.1.013