Vulnerabilities > Soliton > Filezen > 4.2.2

DATE CVE VULNERABILITY TITLE RISK
2021-02-17 CVE-2021-20655 OS Command Injection vulnerability in Soliton Filezen
FileZen (V3.0.0 to V4.2.7 and V5.0.0 to V5.0.2) allows a remote attacker with administrator rights to execute arbitrary OS commands via unspecified vectors.
network
low complexity
soliton CWE-78
critical
9.0
2020-12-14 CVE-2020-5639 Path Traversal vulnerability in Soliton Filezen
Directory traversal vulnerability in FileZen versions from V3.0.0 to V4.2.2 allows remote attackers to upload an arbitrary file in a specific directory via unspecified vectors.
network
low complexity
soliton CWE-22
critical
10.0