An issue found in Earcms Ear App v.20181124 allows a remote attacker to execute arbitrary code via the uload/index-uplog.php.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.cnblogs.com/hantom/p/10621198.html | Exploit Third Party Advisory | 
| https://www.cnblogs.com/yiwd/archive/2013/03/03/2941269.html | Exploit Third Party Advisory | 
| https://www.cnblogs.com/hantom/p/10621198.html | Exploit Third Party Advisory | 
| https://www.cnblogs.com/yiwd/archive/2013/03/03/2941269.html | Exploit Third Party Advisory | 
Configurations
                    History
                    21 Nov 2024, 05:08
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2023-08-29 23:15
Updated : 2024-11-21 05:08
NVD link : CVE-2020-18912
Mitre link : CVE-2020-18912
CVE.ORG link : CVE-2020-18912
JSON object : View
Products Affected
                earcms
- ear
CWE
                
                    
                        
                        CWE-434
                        
            Unrestricted Upload of File with Dangerous Type
