### [CVE-2023-36252](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-36252) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description An issue in Ateme Flamingo XL v.3.6.20 and XS v.3.6.5 allows a remote authenticated attacker to execute arbitrary code and cause a denial of service via a the session expiration function. ### POC #### Reference - https://www.zeroscience.mk/en/vulnerabilities/ #### Github No PoCs found on GitHub currently.