Critical severity9.8NVD Advisory· Published Nov 28, 2023· Updated Jul 9, 2026
CVE-2023-48193
CVE-2023-48193
Description
Insecure Permissions vulnerability in JumpServer GPLv3 v.3.8.0 allows a remote attacker to execute arbitrary code via bypassing the command filtering function. NOTE: this is disputed because command filtering is not intended to restrict what code can be run by authorized users who are allowed to execute files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: =3.8.0
Patches
Vulnerability mechanics
References
3- github.com/296430468/lcc_test/blob/main/jumpserver_BUG.mdnvdExploitThird Party Advisory
- blog.fit2cloud.comnvd
- github.com/jumpserver/jumpserver/issues/13394nvd
News mentions
0No linked articles in our index yet.