CVE-2020-29176: Malicious File Upload
Published Dec 2, 2021
·Updated
An arbitrary file upload vulnerability in Z-BlogPHP v1.6.1.2100 allows attackers to execute arbitrary code via a crafted JPG file.
Affected Software
1 affected component
ZblogCN Z-blogphp=1.6.1.2100
Event History
Dec 2, 2021
CVE Published
via MITRE·10:21 PM
Data Sourced
via MITRE·10:21 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-29176?
The severity of CVE-2020-29176 is high with a severity value of 7.8.
2
How does CVE-2020-29176 affect Z-BlogPHP?
CVE-2020-29176 affects Z-BlogPHP v1.6.1.2100.
3
How can an attacker exploit CVE-2020-29176?
An attacker can exploit CVE-2020-29176 by executing arbitrary code via a crafted JPG file.
4
Is there a fix available for CVE-2020-29176?
Yes, a fix for CVE-2020-29176 is available.
5
What is the Common Weakness Enumeration (CWE) of CVE-2020-29176?
The Common Weakness Enumeration (CWE) of CVE-2020-29176 is CWE-434.