CVE-2019-9632

Publication date

2019-03-08 06:00:00

Family

mitre

State

PUBLISHED

Description

ESAFENET CDG V3 and V5 has an arbitrary file download vulnerability via the fileName parameter in download.jsp because the InstallationPack parameter is mishandled in a /CDGServer3/ClientAjax request.