Vulnerability Description
Western Bridge Cobub Razor 0.8.0 has a file upload vulnerability via the web/assets/swf/uploadify.php URI, as demonstrated by a .php file with the image/jpeg content type.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cobub | Razor | 0.8.0 |
Related Weaknesses (CWE)
References
- https://github.com/cobub/razor/issues/168ExploitIssue TrackingThird Party Advisory
- https://github.com/kyrie403/Vuln/blob/master/Cobub%20Razor/Cobub%20Razor%20-%20fExploitThird Party Advisory
- https://github.com/cobub/razor/issues/168ExploitIssue TrackingThird Party Advisory
- https://github.com/kyrie403/Vuln/blob/master/Cobub%20Razor/Cobub%20Razor%20-%20fExploitThird Party Advisory
FAQ
What is CVE-2019-10276?
CVE-2019-10276 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Western Bridge Cobub Razor 0.8.0 has a file upload vulnerability via the web/assets/swf/uploadify.php URI, as demonstrated by a .php file with the image/jpeg content type.
How severe is CVE-2019-10276?
CVE-2019-10276 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2019-10276?
Check the references section above for vendor advisories and patch information. Affected products include: Cobub Razor.