An issue in Monstra CMS v3.0.4 allows attackers to execute arbitrary web scripts or HTML via bypassing the file extension filter and uploading crafted HTML files.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-13476 An issue in Monstra CMS v3.0.4 allows attackers to execute arbitrary web scripts or HTML via bypassing the file extension filter and uploading crafted HTML files.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T14:22:25.257Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-20691

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-09-27T22:15:07.477

Modified: 2024-11-21T05:12:13.417

Link: CVE-2020-20691

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.