Lucene search

K
cvelistJpcertCVELIST:CVE-2020-5639
HistoryDec 14, 2020 - 2:25 a.m.

CVE-2020-5639

2020-12-1402:25:53
jpcert
www.cve.org
1
directory traversal
remote attackers
arbitrary file upload
os command executed

AI Score

9.6

Confidence

High

EPSS

0.007

Percentile

80.6%

Directory traversal vulnerability in FileZen versions from V3.0.0 to V4.2.2 allows remote attackers to upload an arbitrary file in a specific directory via unspecified vectors. As a result, an arbitrary OS command may be executed.

CNA Affected

[
  {
    "product": "FileZen",
    "vendor": "Soliton Systems K.K.",
    "versions": [
      {
        "status": "affected",
        "version": "versions from V3.0.0 to V4.2.2"
      }
    ]
  }
]

AI Score

9.6

Confidence

High

EPSS

0.007

Percentile

80.6%

Related for CVELIST:CVE-2020-5639