Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-26803
HistoryNov 12, 2020 - 7:15 p.m.

Unrestricted file upload

2020-11-1219:15:00
PRIOn knowledge base
www.prio-n.com
2

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.1%

In Sentrifugo 3.2, users can upload an image under “Assets -> Add” tab. This “Upload Images” functionality is suffered from “Unrestricted File Upload” vulnerability so attacker can upload malicious files using this functionality and control the server.

CPENameOperatorVersion
sentrifugoeq3.2

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.1%

Related for PRION:CVE-2020-26803