Remote Code Execution Vulnerability

This document explains the CVE-2020-10189 Remote Code Execution vulnerability that have been reported.

Vulnerability ID : CVE-2020-10189
Update Release build : 100453
Update Release Date : 08-March-2020
Reported by: Steven Seeley of Source Incite

What was the problem?

This vulnerability lets unauthenticated remote attackers to execute arbitrary code on affected installations of Remote Access Plus.

How to fix it?

These vulnerabilities have been identified and fixed. To apply the fix, follow the steps mentioned below:

    1. Log in to your Remote Access Plus console, click on your current build number on the top right corner.
    2. You can find the latest build applicable to you. Download the PPM and update.

 

Keywords: Remote Code Execution, Security Updates, Vulnerabilities and Fixes.

Note: This issue is not applicable to Remote Access Plus Cloud.