OpenClinic GA 5.09.02 and 5.89.05b does not properly verify uploaded files, which may allow a low-privilege user to upload and execute arbitrary files on the system.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-6624 | OpenClinic GA 5.09.02 and 5.89.05b does not properly verify uploaded files, which may allow a low-privilege user to upload and execute arbitrary files on the system. |
Fixes
Solution
No solution given by the vendor.
Workaround
OpenClinic GA is aware of these vulnerabilities but has not provided any confirmation of their resolution. Please upgrade to the latest version to ensure you have all current fixes.
References
| Link | Providers |
|---|---|
| https://us-cert.cisa.gov/ics/advisories/ICSMA-20-184-01 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-09-17T02:06:04.474Z
Reserved: 2020-06-19T00:00:00
Link: CVE-2020-14488
No data.
Status : Modified
Published: 2020-07-29T14:15:12.660
Modified: 2024-11-21T05:03:22.797
Link: CVE-2020-14488
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD