Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-18655

Опубликовано: 12 нояб. 2019
Источник: nvd
CVSS3: 9.8
CVSS2: 10
EPSS Средний

Описание

File Sharing Wizard version 1.5.0 build 2008 is affected by a Structured Exception Handler based buffer overflow vulnerability. An unauthenticated attacker is able to perform remote command execution and obtain a command shell by sending a HTTP GET request including the malicious payload in the URL. A similar issue to CVE-2019-17415, CVE-2019-16724, and CVE-2010-2331.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:upredsun:file_sharing_wizard:1.5.0:*:*:*:*:*:*:*

EPSS

Процентиль: 97%
0.43475
Средний

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 9.8
github
больше 3 лет назад

File Sharing Wizard version 1.5.0 build 2008 is affected by a Structured Exception Handler based buffer overflow vulnerability. An unauthenticated attacker is able to perform remote command execution and obtain a command shell by sending a HTTP GET request including the malicious payload in the URL. A similar issue to CVE-2019-17415, CVE-2019-16724, and CVE-2010-2331.

EPSS

Процентиль: 97%
0.43475
Средний

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-787