ZeroHour

CVE-2023-50090

CVSS 3.1
9.8 critical
EPSS
<1%p54
Published
()
Modified
Description

Arbitrary File Write vulnerability in the saveReportFile method of ureport2 2.2.9 and before allows attackers to write arbitrary files and run arbitrary commands via crafted POST request.

Vendors
ureport2 project
Products
ureport2
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.