An arbitrary file upload vulnerability in Progress Sitefinity CMS versions 4.0 through 11.0 related to image uploads.
References
Link | Resource |
---|---|
https://insinuator.net/2018/10/vulnerabilities-in-sitefinity-wcms-a-success-story-of-a-responsible-disclosure-process/ | Exploit Technical Description Third Party Advisory |
https://knowledgebase.progress.com/articles/Article/Security-Advisory-for-Resolving-Security-vulnerabilities-September-2018 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2018-09-28T00:00:00
Updated: 2018-10-15T18:57:01
Reserved: 2018-09-14T00:00:00
Link: CVE-2018-17055
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-09-28T00:29:02.587
Modified: 2018-12-12T21:36:47.363
Link: CVE-2018-17055
JSON object: View
Redhat Information
No data.
CWE