CVE-2019-10012
25.03.2019, 19:29
Jenzabar JICS (aka Internet Campus Solution) before 9 allows remote attackers to upload and execute arbitrary .aspx code by placing it in a ZIP archive and using the MoxieManager (for .NET) plugin before 2.1.4 in the moxiemanager directory within the installation folder ICS\ICS.NET\ICSFileServer.Enginsight
Vendor | Product | Version |
---|---|---|
tiny | moxiemanager | 𝑥 < 2.1.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References