CVE-2020-11766
19.05.2020, 20:15
sendfax.php in iFAX AvantFAX before 3.3.6 and HylaFAX Enterprise Web Interface before 0.2.5 allows authenticated Command Injection.
Vendor | Product | Version |
---|---|---|
ifax | hylafax | 0.2.0 ≤ 𝑥 < 0.2.5 |
avantfax | avantfax | 3.3.0 ≤ 𝑥 < 3.3.6 |
𝑥
= Vulnerable software versions