CVE Vulnerabilities

CVE-2020-36037

Published: Aug 11, 2023 | Modified: Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue was disocvered in wuzhicms version 4.1.0, allows remote attackers to execte arbitrary code via the setting parameter to the ueditor in index.php.

Affected Software

Name Vendor Start Version End Version
Wuzhicms Wuzhicms 4.1.0 (including) 4.1.0 (including)

References