ZeroHour

CVE-2021-38697

PoC ×2
CVSS 3.1
9.8 critical
EPSS
3%p85
Published
()
Modified
Description

SoftVibe SARABAN for INFOMA 1.1 allows Unauthenticated unrestricted File Upload, that allows attackers to upload files with any file extension which can lead to arbitrary code execution.

Vendors
softvibe
Products
saraban
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.