Critical severity9.8NVD Advisory· Published Jan 19, 2024· Updated Sep 16, 2026
CVE-2023-27168
CVE-2023-27168
Description
An arbitrary file upload vulnerability in Xpand IT Write-back Manager v2.3.1 allows attackers to execute arbitrary code via a crafted jsp file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:xpand-it:write-back_manager:2.3.1:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:xpand-it:write-back_manager:2.3.1:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: =2.3.1
Patches
Vulnerability mechanics
References
5- balwurk.github.io/CVE-2023-27168/nvdExploitThird Party Advisory
- balwurk.comnvdNot Applicable
- writeback4t.comnvdNot Applicable
- www.xpand-it.comnvdProduct
- ghostline.neocities.org/CVE-2023-27168/nvd
News mentions
0No linked articles in our index yet.