TROYANOSYVIRUS
Back to CVEs

CVE-2019-8954

N/A

Description

In Indexhibit 2.1.5, remote attackers can execute arbitrary code via the v parameter (in conjunction with the id parameter) in a upd_jxcode=true action to the ndxzstudio/?a=system URI.

CVE Details

CVSS v3.1 ScoreN/A
Published2/20/2019
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

indexhibit:indexhibit

Weaknesses (CWE)

CWE-20

References

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.