CVE-2023-6354 Information
Dec 01, 2023
cve
Description
Tyler Technologies Magistrate Court Case Management Plus allows an unauthenticated remote attacker to upload delete and view files by manipulating the PDFViewer.aspx ‘filename’ parameter.
Reference
https://www.tylertech.com/solutions/courts-public-safety/courts-justice https://github.com/qwell/disorder-in-the-court/blob/main/README-TylerTechnologies.md https://techcrunch.com/2023/11/30/us-court-records-systems-vulnerabilities-exposed-sealed-documents/ https://www.cisa.gov/news-events/alerts/2023/11/30/multiple-vulnerabilities-affecting-web-based-court-case-and-document-management-systems
Share on: