CVE-2020-19786

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
23/03/2023
Last modified:
25/02/2025

Description

File upload vulnerability in CSKaza CSZ CMS v.1.2.2 fixed in v1.2.4 allows attacker to execute aritrary commands and code via crafted PHP file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cszcms:csz_cms:1.2.2:*:*:*:*:*:*:*