Vulnerabilities > CVE-2015-0889 - Security Bypass vulnerability in Kent-Web Joyful Note 2.8/5.21/5.3

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
kent-web

Summary

KENT-WEB Joyful Note before 5.3 allows remote attackers to delete files or write to files, and consequently execute arbitrary code, via vectors involving an article.

Vulnerable Configurations

Part Description Count
Application
Kent-Web
3