HIGH
Jenzabar JICS (aka Internet Campus Solution) before 9 allows remote attackers to upload and execute arbitrary .aspx code by placing it in a ZIP archive and using the MoxieManager (for .NET) plugin before 2.1.4 in the moxiemanager directory within the installation folder ICS\ICS.NET\ICSFileServer
Published Mar 25, 2019
7.5
HIGHCVSS 3.1
EPSS 1.59%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.