Description
Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-30373 | Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server. |
References
History
No history.
Status: PUBLISHED
Assigner: TML
Published:
Updated: 2024-09-10T20:33:27.301Z
Reserved: 2023-02-26T06:25:18.748Z
Link: CVE-2023-26578
Updated: 2024-08-02T11:53:53.764Z
Status : Modified
Published: 2023-10-25T18:17:25.837
Modified: 2024-11-21T07:51:47.390
Link: CVE-2023-26578
No data.
OpenCVE Enrichment
No data.
EUVD