Insufficient Access Control in Digiwin .NET Leads to Remote File Download Vulnerability
CVE-2024-7323
6.5MEDIUM
What is CVE-2024-7323?
Digiwin EasyFlow .NET lacks proper access control for specific functionality, and the functionality do not adequately filter user input. A remote attacker with regular privilege can exploit this vulnerability to download arbitrary files from the remote server .