First published: Mon May 24 2021(Updated: )
MetInfo 7.0 beta is affected by a file modification vulnerability. Attackers can delete and modify ini files in app/system/language/admin/language_general.class.php and app/system/include/function/file.func.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Metinfo Metinfo | =7.0.0-beta | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-20907 is critical with a CVSS score of 9.1.
CVE-2020-20907 affects MetInfo 7.0 beta with a file modification vulnerability.
Attackers can delete and modify ini files in app/system/language/admin/language_general.class.php and app/system/include/function/file.func.php.
No, Microsoft Windows is not vulnerable to CVE-2020-20907.
To fix CVE-2020-20907 in MetInfo 7.0 beta, apply the latest patch or version provided by the vendor when available.