Vulnerability Description
Gila CMS through 1.11.4 allows Unrestricted Upload of a File with a Dangerous Type via the moveAction function in core/controllers/fm.php. The attacker needs to use admin/media_upload and fm/move.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gilacms | Gila Cms | <= 1.11.4 |
Related Weaknesses (CWE)
References
- https://github.com/GilaCMS/gila/pull/49ExploitThird Party Advisory
- https://rastating.github.io/gila-cms-upload-filter-bypass-and-rce/ExploitThird Party Advisory
- https://github.com/GilaCMS/gila/pull/49ExploitThird Party Advisory
- https://rastating.github.io/gila-cms-upload-filter-bypass-and-rce/ExploitThird Party Advisory
FAQ
What is CVE-2019-17536?
CVE-2019-17536 is a vulnerability with a CVSS score of 4.9 (MEDIUM). Gila CMS through 1.11.4 allows Unrestricted Upload of a File with a Dangerous Type via the moveAction function in core/controllers/fm.php. The attacker needs to use admin/media_upload and fm/move.
How severe is CVE-2019-17536?
CVE-2019-17536 has been rated MEDIUM with a CVSS base score of 4.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-17536?
Check the references section above for vendor advisories and patch information. Affected products include: Gilacms Gila Cms.