PT-2021-12678 · Tobesoft · Tobesoft Xplatform
Jeongun Baek
·
Published
2021-04-20
·
Updated
2021-04-29
·
CVE-2020-7857
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Tobesoft XPlatform versions prior to 9.2.2.280
Description:
The issue is caused by insufficient validation of improper classes, allowing an unauthenticated attacker to execute arbitrary commands.
Recommendations:
For versions prior to 9.2.2.280, update to version 9.2.2.280 or later to resolve the issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Tobesoft Xplatform