Vulnerability Details CVE-2024-7323
Digiwin EasyFlow .NET lacks proper access control for specific functionality, and the functionality do not adequately filter user input. A remote attacker with regular privilege can exploit this vulnerability to download arbitrary files from the remote server .
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 35.9%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2024-7323
-
cpe:2.3:a:digiwin:easyflow_.net:-