PT-2021-11691 · Grav Cms · Grav Cms

Published

2021-03-15

·

Updated

2022-05-24

·

CVE-2020-29553

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Grav CMS versions through 1.7.0-rc.17
Description: The issue allows an attacker to execute system commands or read and delete arbitrary files on the server by exploiting path-traversal techniques and a lack of CSRF protection. This can be achieved by tricking an admin into visiting a malicious website.
Recommendations: For Grav CMS versions through 1.7.0-rc.17, as a temporary workaround, consider disabling the Scheduler and Backup functionalities until a patch is available. Restrict access to the BackupDelete functionality to minimize the risk of exploitation. Avoid using the Backup functionality to read local files until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-29553
GHSA-FQFF-VCVX-68H3
GHSA-GPMF-Q5JH-HJX4
GHSA-R3RG-JRJQ-W4MR

Affected Products

Grav Cms