ZeroHour

CVE-2020-7875

CVSS 3.1
8.8 high
EPSS
<1%p48
Published
()
Modified
Description

DEXT5 Upload 5.0.0.117 and earlier versions contain a vulnerability, which could allow remote attacker to download and execute remote file by setting the argument, variable in the activeX module. This can be leveraged for code execution.

Vendors
dext5
Products
dext5upload
Weakness
CWE-494
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.