CVE-2020-37186 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Chevereto 3.13.4 Core contains a remote code execution vulnerability that allows attackers to inject malicious code during database configuration installation.…
Critical CVSS: 9.3

CVE-2020-37186

Chevereto 3.13.4 Core contains a remote code execution vulnerability that allows attackers to inject malicious code during database configuration installation. Attackers can manipulate the database table prefix parameter to write a PHP shell file and execute arbitrary system commands through a crafted POST request.
Vendor
-
Product
-
CWE
CWE-94
Yayın Tarihi
2026-02-11 21:16:12
Güncelleme
2026-02-12 15:10:37
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar