CVE-2019-16640
16.07.2024, 17:15
An issue was found in upload.php on the Ruijie EG-2000 series gateway. A parameter passed to the class UploadFile is mishandled (%00 and /var/./html are not checked), which can allow an attacker to upload any file to the gateway. This affects EG-2000SE EG_RGOS 11.9 B11P1.Enginsight
Vendor | Product | Version |
---|---|---|
ruijie | eg-2000se_firmware | 11.1\(1\)b1 |
ruijie | eg-2000se_firmware | 11.9_b11p1:_b11p1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References