code execution vulnerability that could allow an unauthenticated user to
upload a malicious payload and execute it.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Iagona has developed and released Iagona ScrutisWeb v2.1.38.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-39192 | Iagona ScrutisWeb versions 2.1.37 and prior are vulnerable to a remote code execution vulnerability that could allow an unauthenticated user to upload a malicious payload and execute it. |
Mon, 28 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-10-28T15:30:01.043Z
Reserved: 2023-07-13T17:28:15.859Z
Link: CVE-2023-35189
Updated: 2024-08-02T16:23:59.626Z
Status : Modified
Published: 2023-07-18T18:15:12.370
Modified: 2026-06-17T06:04:35.220
Link: CVE-2023-35189
No data.
OpenCVE Enrichment
No data.
-
CWE-434
Unrestricted Upload of File with Dangerous Type
EUVD