HIGH

CVE-2019-5009

CVSS v3

7.2

HIGH

EPSS Score

15.4%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

Vtiger CRM 7.1.0 before Hotfix2 allows uploading files with the extension "php3" in the logo upload field, if the uploaded file is in PNG format and has a size of 150x40. One can put PHP code into the image; PHP code can be executed using "<? ?>" tags, as demonstrated by a CompanyDetailsSave action. This bypasses the bad-file-extensions protection mechanism. It is related to actions/CompanyDetailsSave.php, actions/UpdateCompanyLogo.php, and models/CompanyDetails.php.

Technical details

Published
1/4/2019

Frequently asked questions

What is CVE-2019-5009?

Vtiger CRM 7.1.0 before Hotfix2 allows uploading files with the extension "php3" in the logo upload field, if the uploaded file is in PNG format and has a size of 150x40. One can put PHP code into the image; PHP code can be executed using "<? ?>" tags, as demonstrated by a CompanyDetailsSave action. This bypasses the bad-file-extensions protection mechanism. It is related to actions/CompanyDetailsSave.php, actions/UpdateCompanyLogo.php, and models/CompanyDetails.php.

Is CVE-2019-5009 actively exploited?

Active exploitation of CVE-2019-5009 has not been confirmed. The EPSS score is 15.4%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2019-5009?

CVE-2019-5009 has a CVSS v3 base score of 7.2 (HIGH severity).

Is CVE-2019-5009 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.