CVE-2019-17327

JEUS 7 Fix#0~5 and JEUS 8Fix#0~1 versions contains a directory traversal vulnerability caused by improper input parameter check when uploading installation file in administration web page. That leads remote attacker to execute arbitrary code via uploaded file.
References
Configurations

Configuration 1

cpe:2.3:a:tmaxsoft:jeus:7:fix_5:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:8:fix_1:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:7:fix_0:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:8:fix_0:*:*:*:*:*:*

Information

Published : 2019-11-08 06:15

Updated : 2019-11-13 08:47


NVD link : CVE-2019-17327

Mitre link : CVE-2019-17327

Products Affected
No products.
CWE