Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 10 Feb 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Victor Cms Project
Victor Cms Project victor Cms |
|
| CPEs | cpe:2.3:a:victor_cms_project:victor_cms:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Victor Cms Project
Victor Cms Project victor Cms |
Wed, 04 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 04 Feb 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Victoralagwu
Victoralagwu cmssite |
|
| Vendors & Products |
Victoralagwu
Victoralagwu cmssite |
Tue, 03 Feb 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Victor CMS 1.0 contains an authenticated file upload vulnerability that allows administrators to upload PHP files with arbitrary content through the user_image parameter. Attackers can upload a malicious PHP shell to the /img/ directory and execute system commands by accessing the uploaded file with a 'cmd' parameter. | |
| Title | Victor CMS 1.0 - Authenticated Arbitrary File Upload | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-04T19:00:31.203Z
Reserved: 2026-02-01T13:16:06.485Z
Link: CVE-2020-37073
Updated: 2026-02-04T19:00:24.191Z
Status : Analyzed
Published: 2026-02-03T22:16:22.637
Modified: 2026-02-10T14:52:48.580
Link: CVE-2020-37073
No data.
OpenCVE Enrichment
Updated: 2026-02-04T12:05:13Z