First published: Tue Sep 07 2021(Updated: )
A vulnerability (improper input validation) in the DEXT5 Upload solution allows an unauthenticated attacker to download and execute an arbitrary file via AddUploadFile, SetSelectItem, DoOpenFile function.(CVE-2020-7832)
Credit: vuln@krcert.or.kr
Affected Software | Affected Version | How to fix |
---|---|---|
DEXT5 | <=5.0.0.117 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-7832 is considered to have a high severity due to its potential for unauthorized file execution.
To mitigate CVE-2020-7832, ensure that you update to a version of DEXT5 that is higher than 5.0.0.117.
CVE-2020-7832 can be exploited by unauthenticated attackers to download and execute arbitrary files.
CVE-2020-7832 affects the DEXT5 Upload solution, specifically versions up to and including 5.0.0.117.
CVE-2020-7832 is related to the AddUploadFile, SetSelectItem, and DoOpenFile functions.