Vulnerabilities > Hanwhasecurity > WEB Viewer

DATE CVE VULNERABILITY TITLE RISK
2017-11-06 CVE-2017-16524 Unrestricted Upload of File with Dangerous Type vulnerability in Hanwhasecurity web Viewer 1.0.0.193
Web Viewer 1.0.0.193 on Samsung SRN-1670D devices suffers from an Unrestricted file upload vulnerability: 'network_ssl_upload.php' allows remote authenticated attackers to upload and execute arbitrary PHP code via a filename with a .php extension, which is then accessed via a direct request to the file in the upload/ directory.
network
low complexity
hanwhasecurity samsung CWE-434
6.5