CVE-2020-12790
Severity CVSS v4.0:
Pending analysis
Type:
CWE-74
Injection
Publication date:
11/05/2020
Last modified:
14/05/2020
Description
In the SEOmatic plugin before 3.2.49 for Craft CMS, helpers/DynamicMeta.php does not properly sanitize the URL. This leads to Server-Side Template Injection and credentials disclosure via a crafted Twig template after a semicolon.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:nystudio107:seomatic:*:*:*:*:*:craft_cms:*:* | 3.2.49 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://github.com/nystudio107/craft-seomatic/blob/v3/CHANGELOG.md#3249---20200324
- https://github.com/nystudio107/craft-seomatic/commit/82f4a25b28fd622393da6592dc9e5ccee7fc5be3#diff-52fd042c50432133a00a8f840f4a6165
- https://github.com/nystudio107/craft-seomatic/releases/tag/3.2.49
- https://isec.pl/en/vulnerabilities/isec-0028-seomatic-ssti-23032020.txt



