Absolute Path Traversal in GitHub repository mlflow/mlflow prior to 2.5.0..This CVE has a CVSS3.1 score of 3.7 and a Base Severity of LOW.
Info | Details |
---|---|
CVE ID | CVE-2023-3765 |
CVE State | PUBLISHED |
BaseScore | NA |
BaseSeverity | NA |
VectorString | NA |
Version | NA |
References for CVE-2023-3765 :
https://huntr.dev/bounties/4be5fd63-8a0a-490d-9ee1-f33dc768ed76
https://github.com/mlflow/mlflow/commit/6dde93758d42455cb90ef324407919ed67668b9b
Metric Type | Metric Score |
---|---|
AttackVector(AV) | NA |
AttackComplexity(AC) | NA |
PrivilegesRequired(PR) | NA |
UserInteraction(UI) | NA |
Scope(S) | NA |
Confidentiality(C) | NA |
Availability(A) | NA |
Integrity(I) | NA |