Description
MicroEngine Mailform version 1.1.0 to 1.1.8 contains a path traversal vulnerability. If the product's file upload function and server save option are enabled, a remote attacker may save an arbitrary file on the server and execute it.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31269 | MicroEngine Mailform version 1.1.0 to 1.1.8 contains a path traversal vulnerability. If the product's file upload function and server save option are enabled, a remote attacker may save an arbitrary file on the server and execute it. |
References
History
Fri, 31 Jan 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-01-31T13:56:10.356Z
Reserved: 2023-03-15T00:00:00.000Z
Link: CVE-2023-27507
Updated: 2024-08-02T12:16:35.467Z
Status : Modified
Published: 2023-05-23T02:15:09.610
Modified: 2025-01-31T14:15:30.557
Link: CVE-2023-27507
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD