Vulnerabilities
Vulnerable Software
Stimulsoft:  >> Reports  Security Vulnerabilities
Stimulsoft (aka Stimulsoft Reports) 2013.1.1600.0, when Compilation Mode is used, allows an attacker to execute arbitrary C# code on any machine that renders a report, including the application server or a user's local machine, as demonstrated by System.Diagnostics.Process.Start.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-10-29
A Remote Code Execution vulnerability in Stimulsoft (aka Stimulsoft Reports) 2013.1.1600.0 allows an attacker to encode C# scripts as base-64 in the report XML file so that they will be compiled and executed on the server that processes this file. This can be used to fully compromise the server.
CVSS Score
9.8
EPSS Score
0.068
Published
2020-08-18


Contact Us

Shodan ® - All rights reserved