CVE-2023-46428 (hadsky)

Summary

An arbitrary file upload vulnerability has been identified in HadSky v7.12.10. This flaw allows attackers to upload crafted files to execute arbitrary code on the affected system.

IFF Assessment

FOE

The vulnerability allows for arbitrary code execution, which is a severe threat to system security and data integrity.

Severity

8.8 High

Defender Context

This vulnerability in HadSky presents a critical risk of remote code execution, allowing attackers to take control of affected systems. Defenders should prioritize patching or mitigating systems running HadSky v7.12.10 immediately and monitor for any signs of exploitation.

Read Full Story →