GAT-Ship Web Module before 1.40 suffers from a vulnerability allowing authenticated attackers to upload any file type to the server via the "Documents" area. This vulnerability is related to "uploadDocFile.aspx".
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        
        epss
         
  | 
    
        
        
        epss
         
  | 
Status: PUBLISHED
Assigner: mitre
Published: 2019-04-09T13:09:08
Updated: 2024-08-04T22:40:15.939Z
Reserved: 2019-04-09T00:00:00
Link: CVE-2019-11028
No data.
Status : Modified
Published: 2019-04-09T14:29:00.127
Modified: 2024-11-21T04:20:23.720
Link: CVE-2019-11028
No data.
ReportizFlow