Vulnerability Details CVE-2023-42335
Unrestricted File Upload vulnerability in Fl3xx Dispatch 2.10.37 and fl3xx Crew 2.10.37 allows a remote attacker to execute arbitrary code via the add attachment function in the New Expense component.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.019
EPSS Ranking 82.3%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-42335
-
cpe:2.3:a:fl3xx:crew:2.10.37
-
cpe:2.3:a:fl3xx:dispatch:2.10.37