CVE-2021-28023
08.11.2021, 15:15
Arbitrary file upload in Service import feature in ServiceTonic Helpdesk software version < 9.0.35937 allows a malicious user to execute JSP code by uploading a zip that extracts files in relative paths.Enginsight
Vendor | Product | Version |
---|---|---|
servicetonic | servicetonic | 𝑥 < 9.0.035937 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References