Описание
SalesLogix 6.1 uses client-specified pathnames for writing certain files, which might allow remote authenticated users to create arbitrary files and execute code via the (1) vMME.AttachmentPath or (2) vMME.LibraryPath variables.
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:best_software:saleslogix:*:*:*:*:*:*:*:*
cpe:2.3:a:saleslogix_corporation:saleslogix:2000.0:*:*:*:*:*:*:*
EPSS
Процентиль: 81%
0.02246
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
SalesLogix 6.1 uses client-specified pathnames for writing certain files, which might allow remote authenticated users to create arbitrary files and execute code via the (1) vMME.AttachmentPath or (2) vMME.LibraryPath variables.
EPSS
Процентиль: 81%
0.02246
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other