PT-2021-12678 · Tobesoft · Tobesoft Xplatform

Jeongun Baek

·

Published

2021-04-20

·

Updated

2021-04-29

·

CVE-2020-7857

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Tobesoft XPlatform versions prior to 9.2.2.280
Description: The issue is caused by insufficient validation of improper classes, allowing an unauthenticated attacker to execute arbitrary commands.
Recommendations: For versions prior to 9.2.2.280, update to version 9.2.2.280 or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-7857

Affected Products

Tobesoft Xplatform