Codiad(full version) is vulnerable to write anything to configure file in the installation resulting upload a webshell.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.jianshu.com/p/b09d20af2374 | Exploit Third Party Advisory | 
| http://www.jianshu.com/p/b09d20af2374 | Exploit Third Party Advisory | 
Configurations
                    History
                    21 Nov 2024, 03:04
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://www.jianshu.com/p/b09d20af2374 - Exploit, Third Party Advisory | 
Information
                Published : 2017-11-17 05:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-1000125
Mitre link : CVE-2017-1000125
CVE.ORG link : CVE-2017-1000125
JSON object : View
Products Affected
                codiad
- codiad
 
CWE
                
                    
                        
                        CWE-732
                        
            Incorrect Permission Assignment for Critical Resource
