CVE Vulnerabilities

CVE-2023-2991

Published: Jun 22, 2023 | Modified: Jun 30, 2023
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Fortra Globalscape EFTs administration server suffers from an information disclosure vulnerability where the serial number of the harddrive that Globalscape is installed on can be remotely determined via a trial extension request message

Affected Software

Name Vendor Start Version End Version
Eft_server Globalscape 8.0.0.38 (including) 8.1.0.14 (including)

References