CVE-2018-14441
20.07.2018, 00:29
An issue was discovered in cckevincyh SSH CompanyWebsite through 2018-05-03. admin/admin/fileUploadAction_fileUpload.action allows arbitrary file upload, as demonstrated by a .jsp file with the image/jpeg content type.Enginsight
Vendor | Product | Version |
---|---|---|
ssh_companywebsite_project | ssh_companywebsite | 𝑥 ≤ 2018-05-03 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration