First published: Wed Jun 16 2021(Updated: )
bloofoxCMS 0.5.2.1 is infected with Unrestricted File Upload that allows attackers to upload malicious files (ex: php files).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bloofox Bloofoxcms | =0.5.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-35760 is a vulnerability in bloofoxCMS 0.5.2.1 that allows attackers to upload malicious files through unrestricted file upload.
The severity of the CVE-2020-35760 vulnerability is rated as critical with a severity score of 9.8.
The affected software version for CVE-2020-35760 is bloofoxCMS 0.5.2.1.
Attackers can exploit CVE-2020-35760 by uploading malicious files, such as PHP files, through the unrestricted file upload feature.
Yes, the fix for CVE-2020-35760 is to update bloofoxCMS to a version that patches the unrestricted file upload vulnerability.