Description
PineApp - Mail Secure - The attacker must be logged in as a user to the Pineapp system. The attacker exploits the vulnerable nicUpload.php file to upload a malicious file,Thus taking over the server and running remote code.
No analysis available yet.
Remediation
Vendor Solution
Code hardening by limiting the upload file to only limited images file types
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-23312 | PineApp - Mail Secure - The attacker must be logged in as a user to the Pineapp system. The attacker exploits the vulnerable nicUpload.php file to upload a malicious file,Thus taking over the server and running remote code. |
References
| Link | Providers |
|---|---|
| https://www.gov.il/en/departments/faq/cve_advisories |
|
History
No history.
Status: PUBLISHED
Assigner: INCD
Published:
Updated: 2024-08-04T01:01:58.939Z
Reserved: 2021-07-12T00:00:00.000Z
Link: CVE-2021-36719
No data.
Status : Modified
Published: 2021-12-08T20:15:07.733
Modified: 2024-11-21T06:13:58.410
Link: CVE-2021-36719
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD