A Server-Side Freemarker template injection vulnerability in halo CMS v1.1.3 In the Edit Theme File function. The ftl file can be edited. This is the Freemarker template file. This file can cause arbitrary code execution when it is rendered in the background. exp: <#assign test="freemarker.template.utility.Execute"?new()> ${test("touch /tmp/freemarkerPwned")}
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-09-30T14:29:51

Updated: 2024-08-04T14:30:33.220Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-21523

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-09-30T18:15:23.960

Modified: 2020-10-09T17:40:07.777

Link: CVE-2020-21523

cve-icon Redhat

No data.