CVE-2023-23565

MEDIUM

Geomatika IsiGeo Web 6.0 - Authenticated Local File Inclusion

Title source: llm
STIX 2.1

Description

An issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to retrieve PHP files from the server via Local File Inclusion.

Scores

CVSS v3 4.9
EPSS 0.0099
EPSS Percentile 58.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-98
Status published
Products (1)
geomatika/isigeo_web 6.0
Published Aug 22, 2023
Tracked Since Feb 18, 2026