PT-2019-11671 · Ahsay · Ahsay Cloud Backup Suite

Publicado

2019-07-26

·

Atualizado

2019-07-31

·

CVE-2019-10266

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Ahsay Cloud Backup Suite versions prior to 8.1.1.50
Description An issue allows reading the file structure and content of files without authentication by sending an out-of-bounds XML document to a URL.
Recommendations For versions prior to 8.1.1.50, update to version 8.1.1.50 or later to resolve the issue.

Exploit

Correção

XXE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-10266

Produtos afetados

Ahsay Cloud Backup Suite