Critical severity9.8CISA KEVNVD Advisory· Published Nov 10, 2023· Updated Jul 31, 2026
CVE-2023-47246
CVE-2023-47246
Description
In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- SysAid/On-Premisedescription
Patches
Vulnerability mechanics
References
4- www.sysaid.com/blog/service-desk/on-premise-software-security-vulnerability-notificationnvdExploitVendor Advisory
- documentation.sysaid.com/docs/on-premise-security-enhancements-2023nvdRelease NotesVendor Advisory
- documentation.sysaid.com/docs/latest-version-installation-filesnvdProduct
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.