GAT-Ship Web Module before 1.40 suffers from a vulnerability allowing authenticated attackers to upload any file type to the server via the "Documents" area. This vulnerability is related to "uploadDocFile.aspx".
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-04-09T13:09:08

Updated: 2024-08-04T22:40:15.939Z

Reserved: 2019-04-09T00:00:00

Link: CVE-2019-11028

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-04-09T14:29:00.127

Modified: 2019-05-03T18:52:36.273

Link: CVE-2019-11028

cve-icon Redhat

No data.