CVE-2020-5514: Malicious File Upload
Gila CMS 1.11.8 allows Unrestricted Upload of a File with a Dangerous Type via .phar or .phtml to the lzld/thumb?src= URI.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5514?
CVE-2020-5514 is a vulnerability that allows unrestricted upload of a file with a dangerous type via .phar or .phtml to the lzld/thumb?src= URI in Gila CMS 1.11.8.
What is the severity of CVE-2020-5514?
The severity of CVE-2020-5514 is critical with a CVSS score of 9.1.
How does CVE-2020-5514 affect Gila CMS?
CVE-2020-5514 affects Gila CMS 1.11.8 by allowing unrestricted file upload of dangerous types via .phar or .phtml to the lzld/thumb?src= URI.
How can I fix CVE-2020-5514?
To fix CVE-2020-5514, it is recommended to update Gila CMS to a version that includes a patch for this vulnerability.
Where can I find more information about CVE-2020-5514?
For more information about CVE-2020-5514, you can refer to the following link: https://infosecdb.wordpress.com/2020/01/05/gilacms-1-11-8-remote-code-execution/