CVE-2020-12471
Published Apr 29, 2020MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of deserialization in ModuleGallery.HTML5…
Vendor/product archive
4 CVEs tagged to mono / monox — 1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.
MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of deserialization in ModuleGallery.HTML5…
MonoX through 5.1.40.5152 allows administrators to execute arbitrary code by modifying an ASPX template.
MonoX through 5.1.40.5152 allows admins to execute arbitrary programs by reconfiguring the Converter Executable setting from ffmpeg.exe to a different program.
MonoX through 5.1.40.5152 allows stored XSS via User Status, Blog Comments, or Blog Description.