CVE-2020-28871

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
10/02/2021
Last modified:
26/01/2024

Description

Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an insecure file upload.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:monitorr:monitorr:1.7.6m:*:*:*:*:*:*:*