ClipSoft REXPERT 1.0.0.527 and earlier version allows remote attacker to...
Vulnerability Description
ClipSoft REXPERT 1.0.0.527 and earlier version allows remote attacker to upload arbitrary local file via the ActiveX method in RexViewerCtrl30.ocx. That could lead to disclosure of sensitive information. User interaction is required to exploit this vulnerability in that the target must visit a malicious web page.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-17325
Credits & Attribution
No credits recorded in the NVD database.
More from ClipSoft
View All →Affected Vendor
ClipSoft
View all reports →