Description
Umbraco Cloud 8.5.3 allows an authenticated file upload (and consequently Remote Code Execution) via the Install Packages functionality.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-4082 | Umbraco Cloud 8.5.3 allows an authenticated file upload (and consequently Remote Code Execution) via the Install Packages functionality. |
Github GHSA |
GHSA-h68c-4jh3-cp9j | Umbraco CMS Authenticated File Upload |
References
| Link | Providers |
|---|---|
| https://gitlab.com/eLeN3Re/cve-2020-9471 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T10:26:16.193Z
Reserved: 2020-02-28T00:00:00.000Z
Link: CVE-2020-9471
No data.
Status : Modified
Published: 2020-03-16T20:15:12.923
Modified: 2026-06-17T03:28:00.390
Link: CVE-2020-9471
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-434
Unrestricted Upload of File with Dangerous Type
EUVD
Github GHSA