NA

CVE-2022-38843

Published: 16/09/2022 Updated: 17/09/2022
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

EspoCRM version 7.1.8 is vulnerable to Unrestricted File Upload allowing malicious users to upload malicious file with any extension to the server. Attacker may execute these malicious files to run unintended code on the server to compromise the server.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

espocrm espocrm 7.1.8