An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker to achieve a remove code execution.
References
Configurations
History
28 Jan 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
Information
Published : 2023-05-09 22:15
Updated : 2025-01-28 21:15
NVD link : CVE-2023-28128
Mitre link : CVE-2023-28128
CVE.ORG link : CVE-2023-28128
JSON object : View
Products Affected
ivanti
- avalanche
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type