Path traversal in Folders - CVE-2023-40338

 

Path traversal in Folders - CVE-2023-40338

Published: August 23, 2023


Vulnerability identifier: #VU79886
CSH Severity: Low
CVSS v4: 5.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-40338
CWE-ID: CWE-22
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform directory traversal attacks.

The vulnerability exists due to the affected plugin displays an error message that includes an absolute path of a log file when attempting to access the Scan Organization Folder Log if no logs are available. A remote user can send a specially crafted HTTP request and read arbitrary files on the system.


Affected software

Folders
OpenShift Developer Tools and Services
IBM Cloud Pak for Business Automation
jenkins (Red Hat package)
jenkins-2-plugins (Red Hat package)

How to mitigate CVE-2023-40338

Install update from vendor's website.

Folders - update to 6.848.ve3b_fd7839a_81
IBM Cloud Pak for Business Automation - addressed in versions 21.0.3.26, 23.0.1.4
jenkins (Red Hat package) - addressed in versions 2.426.3.1706515686-3.el8, 2.426.3.1706516352-3.el8
jenkins-2-plugins (Red Hat package) - addressed in versions 4.12.1706515741-1.el8, 4.14.1706516441-1.el8

External References

Related Security Bulletins