Lucene search

K
cvelistMitreCVELIST:CVE-2017-9602
HistoryJun 16, 2017 - 1:00 p.m.

CVE-2017-9602

2017-06-1613:00:00
mitre
www.cve.org

9.7 High

AI Score

Confidence

High

0.017 Low

EPSS

Percentile

87.9%

KBVault Mysql Free Knowledge Base application package 0.16a comes with a FileExplorer/Explorer.aspx?id=/Uploads file-management component. An unauthenticated user can access the file upload and deletion functionality. Through this functionality, a user can upload an ASPX script to Uploads/Documents/ to run any arbitrary code.

9.7 High

AI Score

Confidence

High

0.017 Low

EPSS

Percentile

87.9%