CVE-2016-1000031

Description

Apache Commons FileUpload before 1.3.3 DiskFileItem File Manipulation Remote Code Execution

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
50.086

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities are fixed in IBM WebSphere 8.0.0.15Windows
Multiple vulnerabilities are fixed in IBM WebSphere 8.5.5.13Windows
Vulnerabilities CVE-2017-1681,CVE-2017-12624,CVE-2017-1788,CVE-2016-1000031 are fixed in IBM WebSphere 9.0.0.7Windows
Vulnerabilities CVE-2016-1000031 are fixed in Apache-commons-fileupload 1.3.3Windows
Multiple vulnerabilities are affected in Oracle Primavera P6 Enterprise Project Portfolio Management 8.4Windows
Multiple vulnerabilities are affected in Oracle Primavera P6 Enterprise Project Portfolio Management 15.1Windows
Multiple vulnerabilities are affected in Oracle Primavera P6 Enterprise Project Portfolio Management 15.2Windows
Multiple vulnerabilities are affected in Oracle Primavera P6 Enterprise Project Portfolio Management 16.1Windows
Multiple vulnerabilities are affected in Oracle Primavera P6 Enterprise Project Portfolio Management 16.2Windows
Vulnerabilities CVE-2016-1000031,CVE-2018-0732,CVE-2018-0734,CVE-2018-19362,CVE-2019-2512 are affected in Oracle Primavera P6 Enterprise Project Portfolio Management 17.12Windows
Multiple vulnerabilities are affected in Oracle Primavera P6 Enterprise Project Portfolio Management 18.8Windows
Multiple Vulnerabilities are affected in IBM Tivoli Monitoring 6.2.3Windows
Multiple Vulnerabilities are affected in IBM Tivoli Monitoring 6.3.0Windows
Multiple Vulnerabilities are affected in IBM Sterling B2B Integrator 5.2.6.3Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.0Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.1Windows
Vulnerabilities CVE-2016-1000031 are fixed in Apache-commons-fileupload for Linux 1.3.3Linux
Improper Access Control Vulnerability (CVE-2016-1000031)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234