ZeroHour

CVE-2020-12252

CVSS 3.1
6.2 medium
EPSS
2%p79
Published
()
Modified
Description

An issue was discovered in Gigamon GigaVUE 5.5.01.11. The upload functionality allows an arbitrary file upload for an authenticated user. If an executable file is uploaded into the www-root directory, then it could yield remote code execution via the filename parameter.

Vendors
gigamon
Products
gigavue
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:H/A:H

In the news

No ingested article mentions this CVE yet.