Unrated severityNVD Advisory· Published Mar 12, 2020· Updated Aug 4, 2024
CVE-2020-10390
CVE-2020-10390
Description
OS Command Injection in export.php (vulnerable function called from include/functions-article.php) in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by saving the code to be executed as the wkhtmltopdf path via admin/save-settings.php.
Affected products
2- Chadha PHPKB/Chadha PHPKB Standard Multi-Languagedescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- antoniocannito.itmitrex_refsource_MISC
- antoniocannito.it/phpkb1mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.