PT-2020-15905 · Mara · Mara Cms

CVE-2020-25042

·

Published

2020-09-03

·

Updated

2022-12-03

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Mara CMS version 7.5
Description An issue exists that allows arbitrary file upload. To exploit this, an attacker needs a valid authenticated session and must make a "codebase/dir.php?type=filenew" request to upload PHP code to "codebase/handler.php".
Recommendations For Mara CMS version 7.5, consider restricting access to the "codebase/dir.php" endpoint to prevent unauthorized file uploads until a patch is available. As a temporary workaround, restrict the type parameter in the "codebase/dir.php" endpoint to prevent setting it to "filenew" and uploading malicious PHP code.

Exploit

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-25042

Affected Products

Mara Cms