Vulnerabilities > CVE-2020-22151 - Unspecified vulnerability in Thedaylightstudio Fuel CMS 1.4.6
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Permissions vulnerability in Fuel-CMS v.1.4.6 allows a remote attacker to execute arbitrary code via a crafted zip file to the assests parameter of the upload function.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |