Medium severity6.5NVD Advisory· Published Oct 9, 2023· Updated Jun 17, 2026
CVE-2023-39854
CVE-2023-39854
Description
The web interface of ATX Ucrypt through 3.5 allows authenticated users (or attackers using default credentials for the admin, master, or user account) to include files via a URL in the /hydra/view/get_cc_url url parameter. There can be resultant SSRF.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- ATX/Ucryptdescription
- Range: <=3.5
Patches
Vulnerability mechanics
References
1- wiki.notveg.ninja/blog/CVE-2023-39854/nvdMitigationThird Party Advisory
News mentions
0No linked articles in our index yet.