Codiad(full version) is vulnerable to write anything to configure file in the installation resulting upload a webshell.
References
Link | Resource |
---|---|
http://www.jianshu.com/p/b09d20af2374 | Exploit Third Party Advisory |
Configurations
Information
Published : 2017-11-16 21:29
Updated : 2019-10-02 17:03
NVD link : CVE-2017-1000125
Mitre link : CVE-2017-1000125
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
codiad
- codiad