Back to search
CVE-2019-11028
Published: Apr 9, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
GAT-Ship Web Module before 1.40 suffers from a vulnerability allowing authenticated attackers to upload any file type to the server via the "Documents" area. This vulnerability is related to "uploadDocFile.aspx".
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://vuldb.com/?id.133141
x_refsource_MISC
20190409 GAT-Ship Web Module [All versions before 1.40] - Unrestricted File Upload
mailing-list
x_refsource_FULLDISC
20190426 Re: GAT-Ship Web Module [All versions before 1.40] - Unrestricted File Upload
mailing-list
x_refsource_FULLDISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now