Description
iSpy v7.2.2.0 is vulnerable to remote command execution via path traversal.
References
https://gist.github.com/securylight/79f673aa3a453c80c0e78f356a8f650b
Third Party Advisory
https://github.com/securylight/CVES_write_ups
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8 · Critical
CVSS V3.1
CVSS V3.0
CVSS V2.0
Information
Source identifier
Vulnerability status
Analyzed
Published
2022-06-21T14:15:08.150
3 years agoLast modified
2022-11-05T02:42:44.220
2 years ago