PT-2019-15557 · Upredsun · File Sharing Wizard

Armando Huesca Prida

·

Published

2019-11-12

·

Updated

2024-10-08

·

CVE-2019-18655

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
File Sharing Wizard version 1.5.0 build 2008 is affected by a Structured Exception Handler based buffer overflow vulnerability. An unauthenticated attacker is able to perform remote command execution and obtain a command shell by sending a HTTP GET request including the malicious payload in the URL. A similar issue to CVE-2019-17415, CVE-2019-16724, and CVE-2010-2331.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2019-18655

Affected Products

File Sharing Wizard