Skip to content
COOEY

EXPOSURES › CVE-2023-30187

CVE-2023-30187

CRITICAL
DETAIL
SourceNVD · cve Published2023-08-14 CVSS9.8 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-30187 ↗
⚡ RCE SHAME 50/100 rce

An out of bounds memory access vulnerability in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows remote attackers to run arbitrary code via crafted JavaScript file.

▸ RECOMMENDED ACTION  Remote code execution — patch the affected products on priority.

DESCRIPTION

An out of bounds memory access vulnerability in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows remote attackers to run arbitrary code via crafted JavaScript file.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.