CVEs Blog | G5 Cyber Security

CVE-2020-13894 – handler/upload_handler.jsp in DEXT5 Editor through 3.5.1402961 allows an

handler/upload_handler.jsp in DEXT5 Editor through 3.5.1402961 allows an attacker to download arbitrary files via the savefilepath field.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-13894

Reference (s):

Exit mobile version