ZeroHour

CVE-2019-10012

PoC
CVSS 3.1
7.5 high
EPSS
2%p74
Published
()
Modified
Description

Jenzabar JICS (aka Internet Campus Solution) before 9 allows remote attackers to upload and execute arbitrary .aspx code by placing it in a ZIP archive and using the MoxieManager (for .NET) plugin before 2.1.4 in the moxiemanager directory within the installation folder ICS\ICS.NET\ICSFileServer.

Vendors
jenzabartiny
Products
internet campus solution, moxiemanager
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.