CVE-2023-50440

Published: Dic 13, 2023 Last Modified: Giu 03, 2025
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 5,5
Attack Vector: local
Attack Complexity: low
Privileges Required: none
User Interaction: required
Scope: unchanged
Confidentiality: high
Integrity: none
Availability: none

Description

AI Translation Available

ZED containers produced by PRIMX ZED! for Windows before Q.2020.3 (ANSSI qualification submission); ZED! for Windows before Q.2021.2 (ANSSI qualification submission); ZONECENTRAL for Windows before Q.2021.2 (ANSSI qualification submission); ZONECENTRAL for Windows before 2023.5; ZEDMAIL for Windows before 2023.5; ZED! for Windows, Mac, Linux before 2023.5; ZEDFREE for Windows, Mac, Linux before 2023.5; or ZEDPRO for Windows, Mac, Linux before 2023.5 can be modified by an unauthenticated attacker to include a UNC reference so that it could trigger network access to an attacker-controlled computer when opened by the victim.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0012
Percentile
0,3th
Updated

EPSS Score Trend (Last 90 Days)

284

Improper Access Control

Incomplete
Common Consequences
Security Scopes Affected:
Other
Potential Impacts:
Varies By Context
Applicable Platforms
Technologies: ICS/OT, Not Technology-Specific, Web Based
View CWE Details
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:free:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zedmail by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zedmail:*:*:*:*:*:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
From 2023.0 (inclusive)
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:enterprise:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:enterprise:macos:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zonecentral by Primx

Version Range Affected
From 2023.0 (inclusive)
To 2023.5 (exclusive)
cpe:2.3:a:primx:zonecentral:*:*:*:*:*:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zonecentral by Primx

Version Range Affected
To q.2021.2 (exclusive)
cpe:2.3:a:primx:zonecentral:*:*:*:*:*:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
From q.2021.0 (inclusive)
To q.2021.2 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:enterprise:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:pro:linux:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To q.2020.3 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:enterprise:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:free:macos:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:pro:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:free:linux:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:enterprise:linux:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Zed\! by Primx

Version Range Affected
To 2023.5 (exclusive)
cpe:2.3:a:primx:zed\!:*:*:*:*:pro:macos:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.primx.eu/en/bulletins/security-bulletin-23B30931/
https://www.primx.eu/fr/blog/
https://www.primx.eu/en/bulletins/security-bulletin-23B30931/
https://www.primx.eu/fr/blog/