vendor:
openMAINT
by:
mrb3n
7.5
CVSS
HIGH
Arbitrary File Upload
434
CWE
Product Name: openMAINT
Affected Version From: 1.1-2.4.2
Affected Version To: 1.1-2.4.2
Patch Exists: YES
Related CWE: N/A
CPE: a:openmaint:openmaint:1.1-2.4.2
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Ubuntu 16.04
2020
openMAINT 1.1-2.4.2 – Arbitrary File Upload
An arbitrary file upload vulnerability exists in openMAINT 1.1-2.4.2. A malicious file can be uploaded directly to the /upload/images directory with the file name unchanged. This can be exploited by sending a specially crafted HTTP POST request to the /openmaint/services/json/file/upload endpoint with malicious code in the request body.
Mitigation:
Update to the latest version of openMAINT.