ZeroHour

CVE-2020-21976

PoC
CVSS 3.1
8.8 high
EPSS
2%p78
Published
()
Modified
Description

An arbitrary file upload in the component of NewsOne CMS v1.1.0 allows attackers to webshell and execute arbitrary commands.

Vendors
newsone cms project
Products
newsone cms
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.