PT-2020-13509 · Monstra · Monstra Cms

Published

2020-05-22

·

Updated

2020-05-27

·

CVE-2020-13384

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Monstra CMS version 3.0.4
Description The issue allows remote authenticated users to upload and execute arbitrary PHP code. This is possible because the system blocks .php filenames but does not block filenames with certain extensions such as .php7.
Recommendations For Monstra CMS version 3.0.4, consider restricting access to the admin/index.php?id=filesmanager endpoint to prevent the upload and execution of arbitrary PHP code until a proper fix is available. As a temporary workaround, ensure that all possible executable file extensions are properly blocked to minimize the risk of exploitation.

Exploit

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-13384

Affected Products

Monstra Cms