CVE-2020-24036

PHP object injection in the Ajax endpoint of the backend in ForkCMS below version 5.8.3 allows an authenticated remote user to execute malicious code.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:fork-cms:fork_cms:*:*:*:*:*:*:*:*

Information

Published : 2021-03-04 05:15

Updated : 2021-07-21 04:39


NVD link : CVE-2020-24036

Mitre link : CVE-2020-24036


JSON object : View

CWE
CWE-502

Deserialization of Untrusted Data

Advertisement

dedicated server usa

Products Affected

fork-cms

  • fork_cms