Vulnerability Description
Tran Tu Air Sender v1.0.2 was discovered to contain an arbitrary file upload vulnerability in the upload module. This vulnerability allows attackers to execute arbitrary code via a crafted file.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Air Sender Project | Air Sender | 1.0.2 |
Related Weaknesses (CWE)
References
- https://www.vulnerability-lab.com/get_content.php?id=2212ExploitThird Party Advisory
- https://www.vulnerability-lab.com/get_content.php?id=2212ExploitThird Party Advisory
FAQ
What is CVE-2020-23043?
CVE-2020-23043 is a vulnerability with a CVSS score of 8.8 (HIGH). Tran Tu Air Sender v1.0.2 was discovered to contain an arbitrary file upload vulnerability in the upload module. This vulnerability allows attackers to execute arbitrary code via a crafted file.
How severe is CVE-2020-23043?
CVE-2020-23043 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-23043?
Check the references section above for vendor advisories and patch information. Affected products include: Air Sender Project Air Sender.