Description
An authenticated attacker can inject malicious code into "lang" parameter in /uno/central.php file in CMSuno 1.6.2 and run this PHP code in the web page. In this way, attacker can takeover the control of the server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-18223 | An authenticated attacker can inject malicious code into "lang" parameter in /uno/central.php file in CMSuno 1.6.2 and run this PHP code in the web page. In this way, attacker can takeover the control of the server. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:33:05.765Z
Reserved: 2020-09-14T00:00:00.000Z
Link: CVE-2020-25538
No data.
Status : Modified
Published: 2020-11-13T16:15:18.120
Modified: 2024-11-21T05:18:05.843
Link: CVE-2020-25538
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD