Security Advisory

CVE-2020-21359

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-08-11 20:53:54
Last updated 2024-08-04 14:30:31
Assigner mitre
State PUBLISHED

Description

An arbitrary file upload vulnerability in the Template Upload function of Maccms10 allows attackers bypass the suffix whitelist verification to execute arbitrary code via adding a character to the end of the uploaded files name.