CVE-2019-17327

JEUS 7 Fix#0~5 and JEUS 8Fix#0~1 versions contains a directory traversal vulnerability caused by improper input parameter check when uploading installation file in administration web page. That leads remote attacker to execute arbitrary code via uploaded file.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:tmaxsoft:jeus:7:fix_0:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:7:fix_5:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:8:fix_0:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:8:fix_1:*:*:*:*:*:*

Information

Published : 2019-11-08 10:15

Updated : 2019-11-13 12:47


NVD link : CVE-2019-17327

Mitre link : CVE-2019-17327


JSON object : View

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Advertisement

dedicated server usa

Products Affected

tmaxsoft

  • jeus