An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to upload malicious files in the web root of the application to gain access to the server via the web shell.
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
http://serenissima.com | broken link |
https://www.swascan.com/it/security-advisory-serenissima-informatica-fastcheckin/ | third party advisory exploit |