Vulnerability Details CVE-2020-20691
An issue in Monstra CMS v3.0.4 allows attackers to execute arbitrary web scripts or HTML via bypassing the file extension filter and uploading crafted HTML files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 45.8%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 5.8
Products affected by CVE-2020-20691
-
cpe:2.3:a:monstra:monstra_cms:3.0.4