ZeroHour

CVE-2018-11638

PoC
CVSS 3.0
7.2 high
EPSS
4%p90
Published
()
Modified
Description

Unrestricted Upload of a File with a Dangerous Type in the administrative console in Dialogic PowerMedia XMS through 3.5 allows remote authenticated users to upload malicious code to the web root to gain code execution.

Vendors
dialogic
Products
powermedia xms
Weakness
CWE-434
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.