Vulnerability Description
OS Command Injection in export.php (vulnerable function called from include/functions-article.php) in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by saving the code to be executed as the wkhtmltopdf path via admin/save-settings.php.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Chadhaajay | Phpkb | 9.0 |
Related Weaknesses (CWE)
References
- http://antoniocannito.it/?p=137#rce3ExploitThird Party Advisory
- https://antoniocannito.it/phpkb1#out-of-band-blind-authenticated-remote-code-exeExploitThird Party Advisory
- http://antoniocannito.it/?p=137#rce3ExploitThird Party Advisory
- https://antoniocannito.it/phpkb1#out-of-band-blind-authenticated-remote-code-exeExploitThird Party Advisory
FAQ
What is CVE-2020-10390?
CVE-2020-10390 is a vulnerability with a CVSS score of 7.2 (HIGH). OS Command Injection in export.php (vulnerable function called from include/functions-article.php) in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by saving...
How severe is CVE-2020-10390?
CVE-2020-10390 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-10390?
Check the references section above for vendor advisories and patch information. Affected products include: Chadhaajay Phpkb.