Description
Iagona ScrutisWeb versions 2.1.37 and prior are vulnerable to a remote
code execution vulnerability that could allow an unauthenticated user to
upload a malicious payload and execute it.
code execution vulnerability that could allow an unauthenticated user to
upload a malicious payload and execute it.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Iagona has developed and released Iagona ScrutisWeb v2.1.38.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-39192 | Iagona ScrutisWeb versions 2.1.37 and prior are vulnerable to a remote code execution vulnerability that could allow an unauthenticated user to upload a malicious payload and execute it. |
References
History
Mon, 28 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-10-28T15:30:01.043Z
Reserved: 2023-07-13T17:28:15.859Z
Link: CVE-2023-35189
Updated: 2024-08-02T16:23:59.626Z
Status : Modified
Published: 2023-07-18T18:15:12.370
Modified: 2024-11-21T08:08:07.667
Link: CVE-2023-35189
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD