webTareas through 2.1 allows upload of the dangerous .exe and .shtml file types.
References
Link | Resource |
---|---|
https://sourceforge.net/p/webtareas/tickets/40/ | Third Party Advisory |
https://sourceforge.net/projects/webtareas/files/ | Release Notes Third Party Advisory |
https://medium.com/@tehwinsam/webtareas-2-1-c8b406c68c2a | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-09-17 19:15
Updated : 2020-09-24 11:23
NVD link : CVE-2020-25733
Mitre link : CVE-2020-25733
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
webtareas_project
- webtareas