Vulnerability CVE-2023-33524


Published: 2023-06-05

Description:
Advent/SSC Inc. Tamale RMS < 23.1 is vulnerable to Directory Traversal. The configuration backup file, which contains username hashes, cleartext passwords, and API keys, can be downloaded. This could allow a malicious actor to crack the passwords offline and/or utilize the API keys to control the remote application.

 References:
https://gist.github.com/barrett092/9ed092e4b14b9145f4d046556eb9dab7

Copyright 2026, cxsecurity.com

 

Back to Top