ZeroHour

CVE-2018-10207

CVSS 3.0
5.3 medium
EPSS
1%p62
Published
()
Modified
Description

An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. An attacker can exploit Missing Authorization on the FlexPaperViewer SWF reader, and export files that should have been restricted, via vectors involving page-by-page access to a document in SWF format.

Vendors
vaultize
Products
enterprise file sharing
Weakness
CWE-862
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.