PT-2023-11503 · Unknown · Semcms Php

Published

2023-06-30

·

Updated

2023-07-07

·

CVE-2020-18432

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SEMCMS PHP version 3.7
Description The issue allows remote attackers to upload arbitrary files and gain escalated privileges.
Recommendations For SEMCMS PHP version 3.7, update to a version that fixes the file upload issue to prevent remote attackers from uploading arbitrary files and gaining escalated privileges.

Fix

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2020-18432
GHSA-HG72-F8X2-CHJH

Affected Products

Semcms Php