Description
Unrestricted upload of file with dangerous type exists in MicroEngine Mailform version 1.1.0 to 1.1.8. If the product's file upload function and server save option are enabled, a remote attacker may save an arbitrary file on the server and execute it.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31173 | Unrestricted upload of file with dangerous type exists in MicroEngine Mailform version 1.1.0 to 1.1.8. If the product's file upload function and server save option are enabled, a remote attacker may save an arbitrary file on the server and execute it. |
References
History
Fri, 31 Jan 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-01-31T13:55:13.137Z
Reserved: 2023-03-15T00:00:00.000Z
Link: CVE-2023-27397
Updated: 2024-08-02T12:09:43.367Z
Status : Modified
Published: 2023-05-23T02:15:09.570
Modified: 2025-01-31T14:15:30.370
Link: CVE-2023-27397
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD