Critical severity9.8NVD Advisory· Published May 11, 2020· Updated Jun 17, 2026
CVE-2020-12743
CVE-2020-12743
Description
An issue was discovered in Gazie 7.32. A successful installation does not remove or block (or in any other way prevent use of) its own file /setup/install/setup.php, meaning that anyone can request it without authentication. This file allows arbitrary PHP file inclusion via a hidden_req POST parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Gazie/Gaziedescription
Patches
Vulnerability mechanics
References
1- sourceforge.net/p/gazie/code/3823/nvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.