Security Advisory

CVE-2020-28692

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-16 17:29:31
Last updated 2024-08-04 16:40:59
Assigner mitre
State PUBLISHED

Description

In Gila CMS 1.16.0, an attacker can upload a shell to tmp directy and abuse .htaccess through the logs function for executing PHP files.