CVE-2015-4027
17.12.2015, 19:59
The AcuWVSSchedulerv10 service in Acunetix Web Vulnerability Scanner (WVS) before 10 build 20151125 allows local users to gain privileges via a command parameter in the reporttemplate property in a params JSON object to api/addScan.Enginsight
Vendor | Product | Version |
---|---|---|
acunetix | web_vulnerability_scanner | 𝑥 ≤ 10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References