EXPOSURES › CVE-2023-30187
CVE-2023-30187
CRITICAL
DETAIL
SourceNVD · cve
Published2023-08-14
CVSS9.8
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-30187 ↗
⚡ RCE
SHAME 50/100
rce
An out of bounds memory access vulnerability in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows remote attackers to run arbitrary code via crafted JavaScript file.
▸ RECOMMENDED ACTION Remote code execution — patch the affected products on priority.
PLAYERS IMPLICATED
DESCRIPTION
An out of bounds memory access vulnerability in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows remote attackers to run arbitrary code via crafted JavaScript file.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.