PT-2021-19479 · Frontier · Frontier Ichris
L00Neyhacker
·
Published
2021-05-29
·
Updated
2021-06-10
·
CVE-2021-31703
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Frontier ichris versions 5.18 and earlier
Description
The issue allows users to upload malicious executable files that might later be downloaded and run by any client user.
Recommendations
For versions 5.18 and earlier, consider restricting file upload capabilities to prevent the upload of malicious executable files until a fix is available.
Exploit
Fix
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Frontier Ichris