CVE-2019-8954
20.02.2019, 17:29
In Indexhibit 2.1.5, remote attackers can execute arbitrary code via the v parameter (in conjunction with the id parameter) in a upd_jxcode=true action to the ndxzstudio/?a=system URI.Enginsight
Vendor | Product | Version |
---|---|---|
indexhibit | indexhibit | 2.1.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration