CVE-2018-9206: Malicious File Upload
Published Oct 11, 2018
·Updated
Unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0
Affected Software
1 affected component
Jquery File Upload Project Jquery File Upload<=9.22.0
Remediation
Event History
Oct 11, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionWeakness
Data Sourced
via NVD·03:29 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability?
The vulnerability is an unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0.
2
How severe is CVE-2018-9206?
CVE-2018-9206 has a severity rating of 9.8, which is considered critical.
3
Which software versions are affected by CVE-2018-9206?
Blueimp jQuery-File-Upload versions up to and including v9.22.0 are affected by CVE-2018-9206.
4
How can I fix CVE-2018-9206?
Update Blueimp jQuery-File-Upload to a version beyond v9.22.0 to mitigate the vulnerability.
5
Where can I find more information about CVE-2018-9206?
More information about CVE-2018-9206 can be found at the following references: [link-1], [link-2], [link-3].