CVE-2013-7390
27.01.2020, 18:15
Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before build 80293 allows remote attackers to execute arbitrary code by uploading a file with a jsp extension, then accessing it via a direct request to the file in the webroot.Enginsight
Vendor | Product | Version |
---|---|---|
zohocorp | manageengine_desktop_central | 7.0.0 ≤ 𝑥 ≤ 8.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References