VYPR

FATCA

by Thomson Reuters

CVEs (2)

  • CVE-2015-5951CriJan 6, 2020
    risk 0.65cvss 9.9epss 0.03

    A file upload issue exists in the specid parameter in Thomson Reuters FATCH before 5.2, which allows malicious users to upload arbitrary PHP files to the web root and execute system commands.

  • CVE-2015-5952CriJan 15, 2020
    risk 0.64cvss 9.8epss 0.03

    Directory traversal vulnerability in Thomson Reuters for FATCA before 5.2 allows remote attackers to execute arbitrary files via the item parameter.