CVE-2020-19028: Malicious File Upload
Published Jun 5, 2023
·Updated
File Upload vulnerability found in Emlog EmlogCMS v.6.0.0 allows a remote attacker to gain access to sensitive information via the /admin/plugin.php function.
Affected Software
1 affected component
Emlog emlog=6.0.0
Event History
Jun 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2020-19028?
CVE-2020-19028 is a file upload vulnerability found in Emlog EmlogCMS v.6.0.0.
2
How does CVE-2020-19028 work?
CVE-2020-19028 allows a remote attacker to gain access to sensitive information through the /admin/plugin.php function.
3
Is the vulnerability in Emlog EmlogCMS v.6.0.0 only?
Yes, CVE-2020-19028 affects Emlog EmlogCMS version 6.0.0 only.
4
What is the severity of CVE-2020-19028?
CVE-2020-19028 has a severity rating of high (7.5).
5
How can I fix the file upload vulnerability in Emlog EmlogCMS version 6.0.0?
To fix the file upload vulnerability in Emlog EmlogCMS version 6.0.0, it is recommended to update to a patched version or apply the vendor-supplied fix.