Authneticated Path Traversal in Danfoss AK-SM800A
CVE-2023-25914
8.8HIGH
What is CVE-2023-25914?
This vulnerability allows authenticated attackers to improperly exploit the XML interface of the affected web server software, enabling them to retrieve and read sensitive system files on the server. The disclosed information can potentially lead to a full system compromise, showcasing the significance of securing access controls within web applications.
Affected Version(s)
AK-SM800A < 3.3
