← Back

CVE-2019-18871

nvd nist
Published: May 7, 2020Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

A path traversal in debug.php accessed via default.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to upload arbitrary files, leading to arbitrary remote code execution.

Affected (2)

Remote Kiln Control
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.0.0 v4
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.0.0

Timeline

No history available yet.