-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512
- -
Debian Security Advisory DSA-4115-1 secur...@debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
February 15, 2018
"Jeffrey Walton" wrote:
> On Fri, Feb 9, 2018 at 1:01 PM, Stefan Kanthak
> wrote:
[ http://seclists.org/fulldisclosure/2018/Feb/33 ]
> Not sure if this is related, but:
>
--
Vulnerability Type: Unrestricted File Upload
Vendor of Product: Tejari
Affected Product Code Base: Bravo Solution
Affected Component: Web Interface Management.
Attack Type: Local - Authenticated
Impact: Malicous File Upload
-
Vulnerability Type: Cross Site Request Forgery (CSRF)
Vendor of Product: Tejari
Affected Product Code Base: Bravo Solution
Affected Component: Web Interface Management.
Attack Type: Local - Authenticated
Impact: Unauthorised Access