First published: Mon Mar 18 2019(Updated: )
Roxy Fileman 1.4.5 allows unrestricted file upload in upload.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jenkins Brakeman | =1.4.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20526 is classified as a medium-severity vulnerability due to its potential for file upload exploitation.
To fix CVE-2018-20526, implement file type and size restrictions on the upload.php script to prevent unrestricted file uploads.
CVE-2018-20526 is an unrestricted file upload vulnerability that can lead to remote code execution.
CVE-2018-20526 affects Roxy Fileman version 1.4.5.
Yes, if exploited, CVE-2018-20526 can allow attackers to upload malicious files, leading to severe security breaches.