Home

Description

Adobe RoboHelp Server versions 11.4 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to Remote Code Execution by an admin authenticated attacker. Exploitation of this issue does not require user interaction.

PUBLISHED Reserved 2022-12-19 | Published 2023-11-17 | Updated 2024-09-04 | Assigner adobe




HIGH: 7.2CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Problem types

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)

Product status

Default status
affected

Any version
affected

References

helpx.adobe.com/...y/products/robohelp-server/apsb23-53.html vendor-advisory

helpx.adobe.com/...y/products/robohelp-server/apsb23-53.html vendor-advisory

cve.org (CVE-2023-22273)

nvd.nist.gov (CVE-2023-22273)

Download JSON