Multisuns EasyLog web+ has a path traversal vulnerability within its parameter in a specific URL. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files.
CVE ID: CVE-2023-48389
CVSS Base Severity: HIGH
CVSS Base Score: 7.5
Vendor: Multisuns
Product: EasyLog web+
EPSS Score: 0.07% (probability of being exploited)
EPSS Percentile: 33.24% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)