CVE-2020-13994

CVE-2020-13994

An issue was discovered in Mods for HESK 3.1.0 through 2019.1.0. A privileged user can achieve code execution on the server via a ticket because of improper access control of uploaded resources. This might be exploitable in conjunction with CVE-2020-13992 by an unauthenticated attacker.

Source: CVE-2020-13994

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다