Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability - CVE-2020-19138 - Vulnerability Database

Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability - CVE-2020-19138

Critical
Reference: CVE-2020-19138
Title: Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability
Overview:

Unrestricted Upload of File with Dangerous Type in DotCMS v5.2.3 and earlier allow remote attackers to execute arbitrary code via the component quot/src/main/java/com/dotmarketing/filters/CMSFilter.javaquot.