Csz Cms · Csz Cms · CVE-2020-21250
Name of the Vulnerable Software and Affected Versions:
CSZ CMS version 1.2.4
Description:
The issue is related to an arbitrary file upload vulnerability. It affects the /core/MY Security.php component.
Recommendations:
For CSZ CMS version 1.2.4, consider restricting access to the /core/MY Security.php component until a patch is available. As a temporary workaround, avoid using the vulnerable component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.