A vulnerability(improper input validation) in the ExECM CoreB2B solution allows an unauthenticated attacker to download and execute an arbitrary file via httpDownload function. A successful exploit could allow the attacker to hijack vulnerable system.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: krcert
Published: 2021-09-07T14:46:16
Updated: 2024-08-04T09:41:01.879Z
Reserved: 2020-01-22T00:00:00
Link: CVE-2020-7865
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-09-07T15:15:07.527
Modified: 2024-11-21T05:37:56.400
Link: CVE-2020-7865
Redhat
No data.