ZeroHour

CVE-2020-25483

PoC
CVSS 3.1
9.8 critical
EPSS
9%p95
Published
()
Modified
Description

An arbitrary command execution vulnerability exists in the fopen() function of file writes of UCMS v1.4.8, where an attacker can gain access to the server.

Vendors
ucms project
Products
ucms
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.