Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-7998

Опубликовано: 28 янв. 2020
Источник: nvd
CVSS3: 8.8
CVSS2: 9
EPSS Низкий

Описание

An arbitrary file upload vulnerability has been discovered in the Super File Explorer app 1.0.1 for iOS. The vulnerability is located in the developer path that is accessible and hidden next to the root path. By default, there is no password set for the FTP or Web UI service.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:super_file_explorer_project:super_file_explorer:1.0.1:*:*:*:*:iphone_os:*:*

EPSS

Процентиль: 62%
0.00433
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-434

Связанные уязвимости

github
больше 3 лет назад

An arbitrary file upload vulnerability has been discovered in the Super File Explorer app 1.0.1 for iOS. The vulnerability is located in the developer path that is accessible and hidden next to the root path. By default, there is no password set for the FTP or Web UI service.

EPSS

Процентиль: 62%
0.00433
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-434