FreeScout
cpe:2.3:a:freescout:freescout:*:*:*:*:*:*:*
- < 1.8.179
A vulnerability in FreeScout prior to version 1.8.179 allows for arbitrary file uploads with phtml and phar extensions. This issue arises from insufficient validation of uploaded files, enabling remote code execution on servers running Apache. The vulnerability affects versions 1.8.173 and 1.8.174.
Exploitation of this vulnerability could lead to remote code execution on the server.
Users can update to FreeScout version 1.8.179 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.