vendor:
FUXA
by:
Rodolfo Mariano
7.5
CVSS
HIGH
Remote Code Execution (RCE)
78
CWE
Product Name: FUXA
Affected Version From: FUXA V.1.1.13-1186
Affected Version To: FUXA V.1.1.13-1186
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2023
FUXA V.1.1.13-1186- Unauthenticated Remote Code Execution (RCE)
An unauthenticated remote code execution vulnerability exists in FUXA V.1.1.13-1186 due to improper input validation. An attacker can send a malicious payload to the vulnerable server to execute arbitrary code on the server.
Mitigation:
Input validation should be properly implemented to prevent malicious payloads from being executed.