Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-28062

An Access Control vulnerability exists in HisiPHP 2.0.11 via special packets that are constructed in $files = Dir::getList($decompath. '/ Upload/Plugins /, which could let a remote malicious user execute arbitrary code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.9%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 6.5
Products affected by CVE-2020-28062
  • Hisiphp » Hisiphp » Version: 2.0.11
    cpe:2.3:a:hisiphp:hisiphp:2.0.11


Contact Us

Shodan ® - All rights reserved