Tyler Technologies Civil and Criminal Electronic Filing Upload.aspx allows authentication bypass
CVE-2023-6353
5.3MEDIUM
What is CVE-2023-6353?
The Tyler Technologies Civil and Criminal Electronic Filing system features a vulnerability that permits unauthenticated attackers to interact with the system's Upload.aspx interface. By manipulating the 'enky' parameter, an attacker can upload, delete, and view sensitive files, effectively compromising the integrity and confidentiality of the court documents managed by the system. This vulnerability raises significant concerns for data security within judicial systems, as unauthorized access could lead to the exposure of sensitive information.
Affected Version(s)
Civil and Criminal Electronic Filing 0
