CVE-2023-45799: Mlsoft Tco!stream

Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.

In MLSoft TCO!stream versions 8.0.22.1115 and below, a vulnerability exists due to insufficient permission validation. This allows an attacker to make the victim download and execute arbitrary files.

Affected products

  • Mlsoft Tco!stream: before 8.0.23.215 (fixed in 8.0.23.215)

Published 2023-10-30. Last modified 2026-06-17.