Back to search
CVE-2018-7217
Published: Feb 18, 2018
Modified: Aug 5, 2024
PUBLISHED
Description
In Bravo Tejari Procurement Portal, uploaded files are not properly validated by the application either on the client or the server side. An attacker can take advantage of this vulnerability and upload malicious executable files to compromise the application, as demonstrated by an esop/evm/OPPreliminaryForms.do?formId=857 request.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://seclists.org/bugtraq/2018/Feb/38
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now