Vulnerability Details CVE-2023-6335
Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on Windows allows User-Controlled Filename.This issue affects Workforce Access: before 8.7.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.2%
CVSS Severity
CVSS v3 Score 6.4
Products affected by CVE-2023-6335
-
cpe:2.3:a:hypr:workforce_access:6.12.0
-
cpe:2.3:a:hypr:workforce_access:6.15.0
-
cpe:2.3:a:hypr:workforce_access:6.15.1
-
cpe:2.3:a:hypr:workforce_access:6.16.0
-
cpe:2.3:a:hypr:workforce_access:6.17.0
-
cpe:2.3:a:hypr:workforce_access:6.17.1
-
cpe:2.3:a:hypr:workforce_access:6.18.0
-
cpe:2.3:a:hypr:workforce_access:6.18.1
-
cpe:2.3:a:hypr:workforce_access:6.18.2
-
cpe:2.3:a:hypr:workforce_access:6.18.3
-
cpe:2.3:a:hypr:workforce_access:6.18.4
-
cpe:2.3:a:hypr:workforce_access:7.0.0
-
cpe:2.3:a:hypr:workforce_access:7.0.1
-
cpe:2.3:a:hypr:workforce_access:7.0.2
-
cpe:2.3:a:hypr:workforce_access:7.1.0
-
cpe:2.3:a:hypr:workforce_access:7.1.2
-
cpe:2.3:a:hypr:workforce_access:7.2.0
-
cpe:2.3:a:hypr:workforce_access:7.2.1
-
cpe:2.3:a:hypr:workforce_access:7.3.0
-
cpe:2.3:a:hypr:workforce_access:7.4.0
-
cpe:2.3:a:hypr:workforce_access:7.5.0
-
cpe:2.3:a:hypr:workforce_access:7.7.0
-
cpe:2.3:a:hypr:workforce_access:7.7.1
-
cpe:2.3:a:hypr:workforce_access:8.1.0
-
cpe:2.3:o:microsoft:windows:-