Vulnerability Details CVE-2020-9472
Umbraco CMS 8.5.3 allows an authenticated file upload (and consequently Remote Code Execution) via the Install Package functionality.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.021
EPSS Ranking 79.3%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.0
Products affected by CVE-2020-9472
-
cpe:2.3:a:umbraco:umbraco_cms:8.5.3