CVE-2019-15123: Vikisolutions Vera
High severity, CVSS 7.2. EPSS: 2.4% chance of exploitation in the next 30 days.
The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. An attacker could use this to upload a malicious .aspx file and gain Remote Code Execution on the site.
Affected products
- Vikisolutions Vera: version 4.9.1.26180 only
Published 2020-06-12. Last modified 2026-06-17.