Record summary

CVE-2020-10228 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.

Description

A file upload vulnerability in vtecrm vtenext 19 CE allows authenticated users to upload files with a .pht extension, resulting in remote code execution.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBVTENEXT 19 CE - Remote Code ExecutionExploitDB exploitby Marco RuelaNot analyzed1 file

linked to 3 vulnerabilities

ExploitDB

PoC details

References

4