CVE-2020-7831

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/08/2020
Last modified:
02/09/2020

Description

A vulnerability in the web-based contract management service interface Ebiz4u of INOGARD could allow an victim user to download any file. The attacker is able to use startup menu directory via directory traversal for automatic execution. The victim user need to reboot, however.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:inogard:ebiz4u:cviewer_object_1.0.5.1:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*