Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-7213

Опубликовано: 24 апр. 2019
Источник: nvd
CVSS3: 6.5
CVSS2: 5.5
EPSS Средний

Описание

SmarterTools SmarterMail 16.x before build 6985 allows directory traversal. An authenticated user could delete arbitrary files or could create files in new folders in arbitrary locations on the mail server. This could lead to command execution on the server for instance by putting files inside the web directories.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:smartertools:smartermail:*:*:*:*:*:*:*:*
Версия от 16.0.6345 (включая) до 16.3.6985 (исключая)

EPSS

Процентиль: 94%
0.1338
Средний

6.5 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

SmarterTools SmarterMail 16.x before build 6985 allows directory traversal. An authenticated user could delete arbitrary files or could create files in new folders in arbitrary locations on the mail server. This could lead to command execution on the server for instance by putting files inside the web directories.

EPSS

Процентиль: 94%
0.1338
Средний

6.5 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-22