CVE-2023-54402

CVE-2023-54402 published: iDocView contains a server-side request forgery vulnerability in its /doc/upload endpoint that allows remote unauthenticated attackers to fetch arbitrary URLs by supplying a hardcoded default token value (testtoken) to bypass authentication. Attackers can e...

View full NVD advisory → ← Back to CVE watch