CVEs Blog | G5 Cyber Security

CVE-2020-19138 – Unrestricted Upload of File with Dangerous Type in DotCMS v5.2.3 and earl

Unrestricted Upload of File with Dangerous Type in DotCMS v5.2.3 and earlier allow remote attackers to execute arbitrary code via the component “/src/main/java/com/dotmarketing/filters/CMSFilter.java”.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-19138

Reference (s):

Exit mobile version