CVE-2020-19228: Malicious File Upload
Published May 11, 2022
·Updated
An issue was found in bludit v3.13.0, unsafe implementation of the backup plugin allows attackers to upload arbitrary files.
Affected Software
1 affected component
Bludit bludit=3.13.0
Event History
May 11, 2022
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
Description
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-19228?
The severity of CVE-2020-19228 is critical with a CVSS score of 7.2.
2
What is the affected software for CVE-2020-19228?
The affected software for CVE-2020-19228 is Bludit version 3.13.0.
3
How does CVE-2020-19228 impact Bludit version 3.13.0?
CVE-2020-19228 allows attackers to upload arbitrary files through the unsafe implementation of the backup plugin in Bludit version 3.13.0.
4
Is there a fix available for CVE-2020-19228?
Yes, a fix is available for CVE-2020-19228. It is recommended to update to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2020-19228?
More information about CVE-2020-19228 can be found at the following references: [http://bludit.com](http://bludit.com) and [https://github.com/bludit/bludit/issues/1242](https://github.com/bludit/bludit/issues/1242).