CVE-2019-17327

JEUS 7 Fix#0~5 and JEUS 8Fix#0~1 versions contains a directory traversal vulnerability caused by improper input parameter check when uploading installation file in administration web page. That leads remote attacker to execute arbitrary code via uploaded file.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:tmaxsoft:jeus:7:fix_0:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:7:fix_5:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:8:fix_0:*:*:*:*:*:*
cpe:2.3:a:tmaxsoft:jeus:8:fix_1:*:*:*:*:*:*

History

No history.

Information

Published : 2019-11-08 18:15

Updated : 2024-02-04 20:39


NVD link : CVE-2019-17327

Mitre link : CVE-2019-17327

CVE.ORG link : CVE-2019-17327


JSON object : View

Products Affected

tmaxsoft

  • jeus
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')