Vulnerability Description
An issue was discovered in PONTON X/P Messenger before 3.11.2. Due to path traversal in private/SchemaSetUpload.do for uploaded ZIP files, an executable script can be uploaded by web application administrators, giving the attacker remote code execution on the underlying server via an imgs/*.jsp URI.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ponton | X\/P Messenger | 3.8.0 |
Related Weaknesses (CWE)
References
- https://www.ponton.de/products/xpmessenger/ProductVendor Advisory
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-077.tExploitThird Party Advisory
- https://www.ponton.de/products/xpmessenger/ProductVendor Advisory
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-077.tExploitThird Party Advisory
FAQ
What is CVE-2021-45887?
CVE-2021-45887 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue was discovered in PONTON X/P Messenger before 3.11.2. Due to path traversal in private/SchemaSetUpload.do for uploaded ZIP files, an executable script can be uploaded by web application admin...
How severe is CVE-2021-45887?
CVE-2021-45887 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-45887?
Check the references section above for vendor advisories and patch information. Affected products include: Ponton X\/P Messenger.