CVE-2019-3495observed exploitation

CVE-2019-3495

Published · Updated

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 4.9%
from disclosure to weapon
Published on NVDMar 18
VulnCheck+2317d
exploitation probability
4.9%top 8% of all CVEs
observed exploitation
yesVulnCheck
An issue was discovered on Wifi-soft UniBox controller 0.x through 2.x devices. network/mesh/edit-nds.php is vulnerable to arbitrary file upload, allowing an attacker to upload .php files and execute code on the server with root user privileges. Authentication for accessing this component can be bypassed by using Hard coded credentials.
Affected products
n/a · n/a