CVE-2020-21516

Unrestricted Upload of File with Dangerous Type in packagist/feehi/cms

Identifiers

GHSA-jj62-mc3m-j769, CVE-2020-21516

Package Slug

packagist/feehi/cms

Vulnerability

Unrestricted Upload of File with Dangerous Type

Description

There is an arbitrary file upload vulnerability in FeehiCMS 2.0.8 at the head image upload, that allows attackers to execute relevant PHP code.

Affected Versions

All versions before 2.0.8.1

Solution

Upgrade to version 2.0.8.1 or above.

Last Modified

2022-09-19

source