CVE-2019-12271

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
18/11/2019
Last modified:
21/11/2019

Description

Sandline Centraleyezer (On Premises) allows unrestricted File Upload with a dangerous type, because the feature of adding ".jpg" to any uploaded filename is not enforced on the server side.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sandline:centraleyezer:-:*:*:*:on_premise:*:*:*