Vulnerability Details CVE-2019-17058
Footy Tipping Software AFL Web Edition 2019 allows arbitrary file upload and resultant remote code execution because a whitelist can be bypassed by an Administrator who uploads a crafted upload.dat file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.1%
CVSS Severity
CVSS v3 Score 9.1
CVSS v2 Score 6.5
Products affected by CVE-2019-17058
-
cpe:2.3:a:footy:tipping_software:2019