CVE-2019-9623
EUVD-2019-1899407.03.2019, 05:29
Feng Office 3.7.0.5 allows remote attackers to execute arbitrary code via "<!--#exec cmd=" in a .shtml file to ck_upload_handler.php.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fengoffice | feng_office | 3.7.0.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References