Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-17536

Gila CMS through 1.11.4 allows Unrestricted Upload of a File with a Dangerous Type via the moveAction function in core/controllers/fm.php. The attacker needs to use admin/media_upload and fm/move.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.4%
CVSS Severity
CVSS v3 Score 9.9
CVSS v2 Score 4.0
Products affected by CVE-2019-17536


Contact Us

Shodan ® - All rights reserved