Description
A vulnerability in the web-based contract management service interface Ebiz4u of INOGARD could allow an victim user to download any file. The attacker is able to use startup menu directory via directory traversal for automatic execution. The victim user need to reboot, however.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-28763 | A vulnerability in the web-based contract management service interface Ebiz4u of INOGARD could allow an victim user to download any file. The attacker is able to use startup menu directory via directory traversal for automatic execution. The victim user need to reboot, however. |
References
History
No history.
Status: PUBLISHED
Assigner: krcert
Published:
Updated: 2024-09-17T02:12:07.149Z
Reserved: 2020-01-22T00:00:00.000Z
Link: CVE-2020-7831
No data.
Status : Modified
Published: 2020-08-24T15:15:14.160
Modified: 2024-11-21T05:37:53.360
Link: CVE-2020-7831
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD