An arbitrary file upload vulnerability in the image upload function of ED01-CMS v1.0 allows attackers to execute arbitrary commands.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-18261
Reference (s):
- https://github.com/chilin89117/ED01-CMS/issues/2

