← Back to CVE List

CVE-2019-19020

Published: 2019-12-02T17:15Z
Last Modified: 2024-11-21T04:34Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in TitanHQ WebTitan before 5.18. In the administration web interface it is possible to upload a crafted backup file that enables an attacker to execute arbitrary code by overwriting existing files or adding new PHP files under the web root. This requires the attacker to have access to a valid web interface account. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt