CVE-2020-21322: Malicious File Upload
Published Sep 15, 2021
·Updated
An arbitrary file upload vulnerability in Feehi CMS v2.0.8 and below allows attackers to execute arbitrary code via a crafted PHP file.
Affected Software
1 affected component
Feehi Feehicms<=2.0.8
Event History
Sep 15, 2021
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-21322?
CVE-2020-21322 has a critical severity rating due to its arbitrary file upload capability that allows execution of arbitrary code.
2
How do I fix CVE-2020-21322?
To mitigate CVE-2020-21322, upgrade your Feehi CMS to version 2.0.9 or later.
3
Who is affected by CVE-2020-21322?
Feehi CMS versions 2.0.8 and below are affected by CVE-2020-21322.
4
What kind of attacks can be performed using CVE-2020-21322?
Attackers can exploit CVE-2020-21322 to upload malicious PHP files and execute arbitrary code on the server.
5
Is CVE-2020-21322 a remote vulnerability?
Yes, CVE-2020-21322 is a remote vulnerability that can be exploited over the network without local access.