CVE-2023-3252

CWE-4273 documents3 sources
Severity
6.5MEDIUM
EPSS
0.2%
top 57.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 29

Description

An arbitrary file write vulnerability exists where an authenticated, remote attacker with administrator privileges could alter logging variables to overwrite arbitrary files on the remote host with log data, which could lead to a denial of service condition.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:HExploitability: 2.3 | Impact: 4.0

Affected Packages2 packages

CVEListV5tenable/nessus< 10.6.0
NVDtenable/nessus< 10.6.0

🔴Vulnerability Details

2
CVEList
Arbitrary File Write2023-08-29
GHSA
GHSA-p595-cf69-835h: An arbitrary file write vulnerability exists where an authenticated, remote attacker with administrator privileges could alter logging variables to ov2023-08-29
CVE-2023-3252 (MEDIUM CVSS 6.5) | An arbitrary file write vulnerabili | cvebase.io