CVE-2023-27507

CVSS V2 None CVSS V3 None
Description
MicroEngine Mailform version 1.1.0 to 1.1.8 contains a path traversal vulnerability. If the product's file upload function and server save option are enabled, a remote attacker may save an arbitrary file on the server and execute it.
Overview
  • CVE ID
  • CVE-2023-27507
  • Assigner
  • vultures@jpcert.or.jp
  • Vulnerability Status
  • Received
  • Published Version
  • 2023-05-23T02:15:09
  • Last Modified Date
  • 2023-05-23T02:15:09
History
Created Old Value New Value Data Type Notes
2023-05-23 03:00:57 Added to TrackCVE