GHSA-64j7-pv8p-xprgHighCVSS 8.8

Jazzware RT1000 Edge webUI v. 20.0.1 contains an unrestricted file upload vulnerability in the...

Published
September 22, 2026
Last Modified
September 22, 2026

🔗 CVE IDs covered (1)

📋 Description

Jazzware RT1000 Edge webUI v. 20.0.1 contains an unrestricted file upload vulnerability in the upgrade package upload functionality. An authenticated attacker can upload a server-side executable file. The uploaded file is stored in a web-accessible executable location and can be accessed directly over HTTP without authentication, resulting in remote code execution.

🔗 References (3)