CVE-2020-26803 Information

Description

In Sentrifugo 3.2 users can upload an image under \Assets - Add\ tab. This \Upload Images\ functionality is suffered from \Unrestricted File Upload\ vulnerability so attacker can upload malicious files using this functionality and control the server.

Reference

https://fatihhcelik.blogspot.com/2020/10/sentrifugo-version-32-rce-authenticated_6.html

Share on: