CVE Vulnerabilities

CVE-2020-36037

Published: Aug 11, 2023 | Modified: Aug 15, 2023
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue was disocvered in wuzhicms version 4.1.0, allows remote attackers to execte arbitrary code via the setting parameter to the ueditor in index.php.

Affected Software

Name Vendor Start Version End Version
Wuzhicms Wuzhicms 4.1.0 (including) 4.1.0 (including)

References