← Back

Fatca

fatca

Vendor: Thomsonreuters • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Thomsonreuters
1Fatca
Nov 21, 2024
Jan 15, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Directory traversal vulnerability in Thomson Reuters for FATCA before 5.2 allows remote attackers to execute arbitrary files via the item parameter.
1Thomsonreuters
1Fatca
Nov 21, 2024
Jan 6, 2020
N/A· v4
9.9 CRITICAL· v3
9.0 HIGH· v2
A file upload issue exists in the specid parameter in Thomson Reuters FATCH before 5.2, which allows malicious users to upload arbitrary PHP files to the web root and execute system commands.