CVE-2019-19374
Squiz Matrix CMS 5.5.x.x Code Execution / Information Disclosure
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
An issue was discovered in core/assets/form/form_question_types/form_question_type_file_upload/form_question_type_file_upload.inc in Squiz Matrix CMS 5.5.0 prior to 5.5.0.3, 5.5.1 prior to 5.5.1.8, 5.5.2 prior to 5.5.2.4, and 5.5.3 prior to 5.5.3.3 where a user can delete arbitrary files from the server during interaction with the File Upload field type, when a custom form exists. (This is related to an information disclosure issue within the File Upload field type that allows users to view the full path to uploaded files, including the product's web root directory.)
Se detectó un problema en el archivo core/assets/form/form_question_types/form_question_type_file_upload/form_question_type_file_upload.inc en Squiz Matrix CMS, versiones 5.5.0 anteriores a 5.5.0.3, versiones 5.5.1 anteriores a 5.5.1.8, versiones 5.5.2 anteriores a 5.5.2.4, y versiones 5.5.3 anteriores a 5.5.3.3 donde un usuario puede eliminar archivos arbitrarios del servidor durante la interacción con el tipo de campo File Upload, cuando existe un formulario personalizado. (Esto está relacionado con un problema de divulgación de información dentro del tipo de campo File Upload que permite a usuarios visualizar la ruta completa a los archivos cargados, incluyendo el directorio root web del producto).
Squiz Matrix CMS suffers from PHP unserialization code execution, information disclosure, and arbitrary file deletion vulnerabilities.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-11-28 CVE Reserved
- 2019-12-11 CVE Published
- 2024-05-08 EPSS Updated
- 2024-08-05 CVE Updated
- 2024-08-05 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://matrix.squiz.net/releases/5.5/5.5.3.3 | Release Notes | |
https://zxsecurity.co.nz/wp-content/uploads/2019/12/ZX%20Security%20Advisory%20-%20Squiz%20Matrix%20CMS%20-%20Multiple%20Vulnerabilities.pdf | Third Party Advisory |
URL | Date | SRC |
---|---|---|
http://packetstormsecurity.com/files/155671/Squiz-Matrix-CMS-5.5.x.x-Code-Execution-Information-Disclosure.html | 2024-08-05 | |
http://seclists.org/fulldisclosure/2019/Dec/34 | 2024-08-05 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Squiz Search vendor "Squiz" | Matrix Search vendor "Squiz" for product "Matrix" | >= 5.5.0.0 < 5.5.0.3 Search vendor "Squiz" for product "Matrix" and version " >= 5.5.0.0 < 5.5.0.3" | - |
Affected
| ||||||
Squiz Search vendor "Squiz" | Matrix Search vendor "Squiz" for product "Matrix" | >= 5.5.1.0 < 5.5.1.8 Search vendor "Squiz" for product "Matrix" and version " >= 5.5.1.0 < 5.5.1.8" | - |
Affected
| ||||||
Squiz Search vendor "Squiz" | Matrix Search vendor "Squiz" for product "Matrix" | >= 5.5.2.0 < 5.5.2.4 Search vendor "Squiz" for product "Matrix" and version " >= 5.5.2.0 < 5.5.2.4" | - |
Affected
| ||||||
Squiz Search vendor "Squiz" | Matrix Search vendor "Squiz" for product "Matrix" | >= 5.5.3.0 < 5.5.3.3 Search vendor "Squiz" for product "Matrix" and version " >= 5.5.3.0 < 5.5.3.3" | - |
Affected
|