CVE-2019-15131 Information
Feb 14, 2021
cve
Description
In Code42 Enterprise 6.7.5 and earlier 6.8.4 through 6.8.8 and 7.0.0 a vulnerability has been identified that may allow arbitrary files to be uploaded to Code42 servers and executed. This vulnerability could allow an attacker to create directories and save files on Code42 servers which could potentially lead to code execution.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Reference
https://code42.com/r/support/CVE-2019-15131 https://support.code42.com/Terms_and_conditions/Code42_customer_support_resources/Code42_security_advisories
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
9.8
Share on: