CVEs Blog | G5 Cyber Security

CVE-2020-25042 – An arbitrary file upload issue exists in Mara CMS 7.5. In order to exploi

An arbitrary file upload issue exists in Mara CMS 7.5. In order to exploit this, an attacker must have a valid authenticated (admin/manager) session and make a codebase/dir.php?type=filenew request to upload PHP code to codebase/handler.php.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25042

Reference (s):

Exit mobile version