Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: TML

Published: 2023-10-25T09:43:54.725Z

Updated: 2024-09-10T20:33:27.301Z

Reserved: 2023-02-26T06:25:18.748Z

Link: CVE-2023-26578

cve-icon Vulnrichment

Updated: 2024-08-02T11:53:53.764Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-25T18:17:25.837

Modified: 2023-10-28T03:22:06.693

Link: CVE-2023-26578

cve-icon Redhat

No data.