ZeroHour

CVE-2020-11598

PoC
CVSS 3.1
9.8 critical
EPSS
3%p84
Published
()
Modified
Description

An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. Upload.ashx allows remote attackers to execute arbitrary code by uploading and executing an ASHX file.

Vendors
cipplanner
Products
cipace
Weakness
CWE-306, CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.