MLflow Directory Traversal (CVE-2023-3765)

Related Vulnerabilities: CVE-2023-3765  

Check Point Reference: CPAI-2023-1449 Date Published: 15 Jan 2024 Severity: Critical Last Updated: Monday 15 January, 2024 Source: Industry Reference:CVE-2023-3765
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? MLflow prior to 2.5.0 Vulnerability Description A directory traversal vulnerability exists in MLflow. Successful exploitation of this vulnerability would allow a remote attacker to list directories on the affected system.