Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: TML

Published: 2023-10-25T09:43:54.725Z

Updated: 2023-10-26T06:43:42.336Z

Reserved: 2023-02-26T06:25:18.748Z


Link: CVE-2023-26578

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-10-25T18:17:25.837

Modified: 2023-10-28T03:22:06.693


Link: CVE-2023-26578

JSON object: View

cve-icon Redhat Information

No data.