VYPR

Maracms

by Mara

CVEs (1)

  • CVE-2020-25042HigSep 3, 2020
    risk 0.51cvss 7.2epss 0.18

    An arbitrary file upload issue exists in Mara CMS 7.5. In order to exploit this, an attacker must have a valid authenticated (admin/manager) session and make a codebase/dir.php?type=filenew request to upload PHP code to codebase/handler.php.