Security Advisory

CVE-2020-12471

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-04-29 19:58:15
Last updated 2024-08-04 11:56:52
Assigner mitre
State PUBLISHED

Description

MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of deserialization in ModuleGallery.HTML5Upload, ModuleGallery.SilverLightUploadModule, HTML5Upload, and SilverLightUploadHandler.