CVE-2021-40845 Information
Jun 07, 2022
cve
Description
The web part of Zenitel AlphaCom XE Audio Server through 11.2.3.10 called AlphaWeb XE does not restrict file upload in the Custom Scripts section at php/index.php. Neither the content nor extension of the uploaded files is checked allowing execution of PHP code under the /cmd directory.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
https://ricardojoserf.github.io/CVE-2021-40845/ https://github.com/ricardojoserf/CVE-2021-40845 http://packetstormsecurity.com/files/164149/Zenitel-AlphaCom-XE-Audio-Server-11.2.3.10-Shell-Upload.html http://packetstormsecurity.com/files/164160/Zenitel-AlphaCom-XE-Audio-Server-11.2.3.10-Shell-Upload.html
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
8.8
Share on: