CVE-2020-20495: Critical severity bludit vulnerability
Published Aug 31, 2021
·Updated
bludit v3.13.0 contains an arbitrary file deletion vulnerability in the backup plugin via the deleteBackup' parameter.
Affected Software
1 affected component
Bludit bludit=3.13.0
Event History
Aug 31, 2021
CVE Published
via MITRE·11:07 PM
Data Sourced
via MITRE·11:07 PM
Description
Frequently Asked Questions
1
What is CVE-2020-20495?
CVE-2020-20495 is a vulnerability in the backup plugin of the Bludit CMS version 3.13.0 that allows arbitrary file deletion.
2
How severe is CVE-2020-20495?
CVE-2020-20495 has a severity rating of 9.1 (critical).
3
How does CVE-2020-20495 work?
CVE-2020-20495 allows an attacker to delete arbitrary files by exploiting the 'deleteBackup' parameter in the backup plugin of Bludit CMS.
4
Is Bludit version 3.13.0 affected by CVE-2020-20495?
Yes, Bludit version 3.13.0 is affected by CVE-2020-20495.
5
Is there a fix for CVE-2020-20495?
Yes, a fix for CVE-2020-20495 is available. It is recommended to update to the latest version of Bludit CMS.