ZeroHour

CVE-2020-7831

CVSS 3.1
8.8 high
EPSS
<1%p57
Published
()
Modified
Description

A vulnerability in the web-based contract management service interface Ebiz4u of INOGARD could allow an victim user to download any file. The attacker is able to use startup menu directory via directory traversal for automatic execution. The victim user need to reboot, however.

Vendors
inogard
Products
ebiz4u
Weakness
CWE-494
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.