PT-2020-13130 · Monox · Monox

Published

2020-04-29

·

Updated

2020-05-04

·

CVE-2020-12470

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MonoX versions prior to 5.1.40.5152
Description The issue allows administrators to execute arbitrary code by modifying an ASPX template.
Recommendations For versions prior to 5.1.40.5152, update to a version that contains a fix for this issue to prevent arbitrary code execution.

Exploit

Fix

Files Accessible to External Parties

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-12470

Affected Products

Monox