Unrestricted Upload of a File with a Dangerous Type in the administrative console in Dialogic PowerMedia XMS through 3.5 allows remote authenticated users to upload malicious code to the web root to gain code execution.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://d3adend.org/blog/?p=1398 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-07-03T17:00:00
Updated: 2024-08-05T08:17:09.236Z
Reserved: 2018-05-31T00:00:00
Link: CVE-2018-11638
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-07-03T17:29:00.483
Modified: 2024-11-21T03:43:44.963
Link: CVE-2018-11638
Redhat
No data.