Lucene search

K
cvelistMitreCVELIST:CVE-2020-18875
HistoryAug 18, 2021 - 4:55 p.m.

CVE-2020-18875

2021-08-1816:55:53
mitre
www.cve.org
2
access control
dotcms
privilege escalation
vtl files

AI Score

8.9

Confidence

High

EPSS

0.004

Percentile

74.9%

Incorrect Access Control in DotCMS versions before 5.1 allows remote attackers to gain privileges by injecting client configurations via vtl (velocity) files.

AI Score

8.9

Confidence

High

EPSS

0.004

Percentile

74.9%

Related for CVELIST:CVE-2020-18875