CVE-2018-20526: Malicious File Upload
Published Mar 18, 2019
·Updated
Roxy Fileman 1.4.5 allows unrestricted file upload in upload.php.
Affected Software
1 affected component
Roxyfileman Roxy Fileman=1.4.5
Event History
Mar 18, 2019
CVE Published
via MITRE·03:25 PM
Data Sourced
via MITRE·03:25 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-20526?
CVE-2018-20526 is classified as a medium-severity vulnerability due to its potential for file upload exploitation.
2
How do I fix CVE-2018-20526?
To fix CVE-2018-20526, implement file type and size restrictions on the upload.php script to prevent unrestricted file uploads.
3
What type of vulnerability is CVE-2018-20526?
CVE-2018-20526 is an unrestricted file upload vulnerability that can lead to remote code execution.
4
What software is affected by CVE-2018-20526?
CVE-2018-20526 affects Roxy Fileman version 1.4.5.
5
Can CVE-2018-20526 lead to severe security breaches?
Yes, if exploited, CVE-2018-20526 can allow attackers to upload malicious files, leading to severe security breaches.