CVE-2020-23564: Malicious File Upload
Published Aug 5, 2023
·Updated
File Upload vulnerability in SEMCMS 3.9 allows remote attackers to run arbitrary code via SEMCMSUpfile.php.
Affected Software
1 affected component
Sem-cms Semcms=3.9
Event History
Aug 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
02:15 AM
Description
Frequently Asked Questions
1
What is CVE-2020-23564?
CVE-2020-23564 is a file upload vulnerability in SEMCMS 3.9 that allows remote attackers to run arbitrary code via SEMCMS_Upfile.php.
2
What is the severity of CVE-2020-23564?
The severity of CVE-2020-23564 is high with a severity value of 7.2.
3
How does CVE-2020-23564 affect SEMCMS?
CVE-2020-23564 affects SEMCMS 3.9.
4
How can an attacker exploit CVE-2020-23564?
An attacker can exploit CVE-2020-23564 by uploading a malicious file using SEMCMS_Upfile.php to run arbitrary code on the target system.
5
Is there a fix available for CVE-2020-23564?
There is no specific fix available for CVE-2020-23564, but it is recommended to update to a newer version of SEMCMS that addresses this vulnerability.