Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-15748

SITOS six Build v6.2.1 permits unauthorised users to upload and import a SCORM 2004 package by browsing directly to affected pages. An unauthenticated attacker could use the upload and import functionality to import a malicious SCORM package that includes a PHP file, which could execute arbitrary PHP code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.02
EPSS Ranking 83.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2019-15748
  • Sitos » Sitos Six » Version: 6.2.1
    cpe:2.3:a:sitos:sitos_six:6.2.1


Contact Us

Shodan ® - All rights reserved