PT-2020-13759 · Dext5 · Dext5 Editor

Kang Bong Goo

+1

·

Published

2020-06-07

·

Updated

2020-06-11

·

CVE-2020-13894

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions DEXT5 Editor versions through 3.5.1402961
Description The issue allows an attacker to download arbitrary files. This is achieved by exploiting the savefilepath field in the handler/upload handler.jsp file.
Recommendations For versions through 3.5.1402961, restrict access to the handler/upload handler.jsp file to minimize the risk of exploitation. Avoid using the savefilepath field in the affected endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-13894

Affected Products

Dext5 Editor