CVE-2015-0889: High severity kent-web joyful note vulnerability
Published Feb 28, 2015
·Updated
KENT-WEB Joyful Note before 5.3 allows remote attackers to delete files or write to files, and consequently execute arbitrary code, via vectors involving an article.
Affected Software
1 affected component
KENT-WEB Joyful Note<=5.21
Event History
Feb 28, 2015
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0889?
CVE-2015-0889 is considered to have a moderate severity level due to its potential to allow remote code execution.
2
How do I fix CVE-2015-0889?
To fix CVE-2015-0889, update KENT-WEB Joyful Note to version 5.3 or later.
3
What are the potential impacts of CVE-2015-0889?
CVE-2015-0889 can allow attackers to delete or write files on the server, leading to possible arbitrary code execution.
4
Is CVE-2015-0889 still exploitable in versions after 5.3?
No, CVE-2015-0889 is not exploitable in KENT-WEB Joyful Note versions 5.3 and above.
5
Who is affected by CVE-2015-0889?
Users of KENT-WEB Joyful Note versions prior to 5.3 are affected by CVE-2015-0889.