vendor:
Codiad
by:
P4p4_M4n3
9.8
CVSS
CRITICAL
Remote Code Execution
78
CWE
Product Name: Codiad
Affected Version From: 2.8.2004
Affected Version To: 2.8.2004
Patch Exists: YES
Related CWE:
CPE: a:codiad:codiad
Platforms Tested: WebApp
2020
Codiad 2.8.4 – Remote Code Execution (Authenticated) (4)
A vulnerability in Codiad 2.8.4 allows an authenticated user to execute arbitrary code on the server. An attacker can upload a malicious file to the INF directory and delete it to get the full path of the file. The attacker can then use curl to execute the malicious file and gain a reverse shell.
Mitigation:
Upgrade to the latest version of Codiad, or apply the patch provided by the vendor.