CVE-2020-26803 Information
Feb 14, 2021
cve
Description
In Sentrifugo 3.2 users can upload an image under \Assets - Add\ tab. This \Upload Images\ functionality is suffered from \Unrestricted File Upload\ vulnerability so attacker can upload malicious files using this functionality and control the server.
Reference
https://fatihhcelik.blogspot.com/2020/10/sentrifugo-version-32-rce-authenticated_6.html
Share on: