monocms.com
https://monocms.com/download CVE-2020-25985
HIGH
MonoCMS Blog 1.0 - Arbitrary File Deletion (Authenticated)
Record summary
CVE-2020-25985 has a selected CVSS score of 8.1 (high); EIP currently links 1 catalogued exploit.
Description
MonoCMS Blog 1.0 is affected by: Arbitrary File Deletion. Any authenticated user can delete files on and off the webserver (php files can be unlinked and not deleted).
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBMonoCMS Blog 1.0 - Arbitrary File Deletion (Authenticated)ExploitDB exploitby Shahrukh Iqbal MirzaNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-25985 exploit-db.com
https://www.exploit-db.com/exploits/48848