CVE-2023-41266

⚠ KEVEPSS 94.2%

Qlik Sense Path Traversal Vulnerability

Added to CISA KEV: 12/7/2023

Description

Qlik Sense contains a path traversal vulnerability that allows a remote, unauthenticated attacker to create an anonymous session by sending maliciously crafted HTTP requests. This anonymous session could allow the attacker to send further requests to unauthorized endpoints.

Affected packages (0)

No package mapping in OSV.