First published: Tue Jun 28 2022(Updated: )
File inclusion vulnerability in Minicms v1.9 allows remote attackers to execute arbitary PHP code via post-edit.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
1234n Minicms | =1.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-19896 is a file inclusion vulnerability in Minicms v1.9 that allows remote attackers to execute arbitrary PHP code via post-edit.php.
CVE-2020-19896 has a severity rating of 9.8 out of 10, indicating a critical vulnerability.
Remote attackers can exploit CVE-2020-19896 by using the file inclusion vulnerability in Minicms v1.9 to execute arbitrary PHP code via post-edit.php.
At the moment, there is no specific fix available for CVE-2020-19896, but it is recommended to update Minicms to the latest version and implement proper security measures to mitigate the risk.
You can find more information about CVE-2020-19896 on the GitHub issue page at: https://github.com/bg5sbk/MiniCMS/issues/36