Vulnerability Description
fexsrv in F*EX (aka Frams' Fast File EXchange) before fex-20160919_2 allows eval injection (for unauthenticated remote code execution).
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Uni-Stuttgart | Frams\' Fast File Exchange | < 20160919_2 |
Related Weaknesses (CWE)
References
- https://cwe.mitre.org/data/definitions/95.htmlThird Party Advisory
- https://fex.rus.uni-stuttgart.deProductVendor Advisory
- https://secfault-security.com/advisories/cve2020-15591.htmlExploitPatchThird Party Advisory
- https://cwe.mitre.org/data/definitions/95.htmlThird Party Advisory
- https://fex.rus.uni-stuttgart.deProductVendor Advisory
- https://secfault-security.com/advisories/cve2020-15591.htmlExploitPatchThird Party Advisory
FAQ
What is CVE-2020-15591?
CVE-2020-15591 is a vulnerability with a CVSS score of 9.8 (CRITICAL). fexsrv in F*EX (aka Frams' Fast File EXchange) before fex-20160919_2 allows eval injection (for unauthenticated remote code execution).
How severe is CVE-2020-15591?
CVE-2020-15591 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-15591?
Check the references section above for vendor advisories and patch information. Affected products include: Uni-Stuttgart Frams\' Fast File Exchange.