CVE-2018-10207

An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. An attacker can exploit Missing Authorization on the FlexPaperViewer SWF reader, and export files that should have been restricted, via vectors involving page-by-page access to a document in SWF format.
Configurations

Configuration 1 (hide)

cpe:2.3:a:vaultize:enterprise_file_sharing:17.05.31:*:*:*:*:*:*:*

History

21 Nov 2024, 03:41

Type Values Removed Values Added
References () https://www.excellium-services.com/cert-xlm-advisory/cve-2018-10207/ - Third Party Advisory () https://www.excellium-services.com/cert-xlm-advisory/cve-2018-10207/ - Third Party Advisory

Information

Published : 2018-04-25 18:29

Updated : 2024-11-21 03:41


NVD link : CVE-2018-10207

Mitre link : CVE-2018-10207

CVE.ORG link : CVE-2018-10207


JSON object : View

Products Affected

vaultize

  • enterprise_file_sharing
CWE
CWE-862

Missing Authorization