Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-8404

An issue was discovered in Webiness Inventory 2.3. The ProductModel component allows Arbitrary File Upload via a crafted product image during the creation of a new product. Consequently, an attacker can steal information from the site with the help of an installed executable file, or change the contents of pages.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.198
EPSS Ranking 95.2%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 5.5
Products affected by CVE-2019-8404


Contact Us

Shodan ® - All rights reserved