356
VMScore

CVE-2019-18870

Published: 07/05/2020 Updated: 12/05/2020
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

A path traversal via the iniFile parameter in excel.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated malicious user to download arbitrary files from the host machine.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

blaauwproducts remote kiln control

blaauwproducts remote kiln control 3.0.0