ZeroHour

CVE-2017-17108

CVSS 3.0
9.8 critical
EPSS
2%p81
Published
()
Modified
Description

Path traversal vulnerability in the administrative panel in KonaKart eCommerce Platform version 8.7 and earlier could allow an attacker to download system files, as well as upload specially crafted JSP files and in turn gain access to the server.

Vendors
konakart
Products
konakart
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.