nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-30967 CVE-2023-30967
CRITICAL
Gotham Orbital Simulator path traversal
Record summary
CVE-2023-30967 has a selected CVSS score of 9.8 (critical).
Description
Gotham Orbital-Simulator service prior to 0.692.0 was found to be vulnerable to a Path traversal issue allowing an unauthenticated user to read arbitrary files on the file system.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Sep 10, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
com.palantir.meta:orbital-simulatorBrowse Palantir / com.palantir.meta:orbital-simulator | CVE List | * to < 0.692.0 | affected |
References
2palantir.safebase.us
https://palantir.safebase.us/?tcuUid=8fd5809f-26f8-406e-b36f-4a6596a19d79