Описание
Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.
EPSS
Процентиль: 52%
0.00287
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-281
Связанные уязвимости
CVSS3: 9.8
github
12 месяцев назад
Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.
EPSS
Процентиль: 52%
0.00287
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-281