VYPR
High severity7.5NVD Advisory· Published Oct 28, 2021· Updated Jun 17, 2026

CVE-2020-7875

CVE-2020-7875

Description

DEXT5 Upload 5.0.0.117 and earlier versions contain a vulnerability, which could allow remote attacker to download and execute remote file by setting the argument, variable in the activeX module. This can be leveraged for code execution.

Affected products

3
  • Dext5/Dext5uploadllm-create2 versions
    <=5.0.0.117+ 1 more
    • (no CPE)range: <=5.0.0.117
    • cpe:2.3:a:dext5:dext5upload:*:*:*:*:*:*:*:*range: <=5.0.0.117
  • RAONWIZ/DEXT5 Uploadv5
    Range: 5.0.0.117

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.