6.5
CVSSv3

CVE-2020-11700

Published: 17/09/2020 Updated: 21/07/2021
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

An issue exists in Titan SpamTitan 7.07. Improper sanitization of the parameter fname, used on the page certs-x.php, would allow an malicious user to retrieve the contents of arbitrary files. The user has to be authenticated before interacting with this page.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

titanhq spamtitan 7.07

Exploits

SpamTitan version 707 suffers from an authenticated remote code execution vulnerability ...