Your submission was sent successfully! Close

CVE-2020-18185

Published: 2 October 2020

class.plx.admin.php in PluXml 5.7 allows attackers to execute arbitrary PHP code by modify the configuration file in a linux environment.

Notes

AuthorNote
leosilva
deferred as 2021-10-19 there is no fix yet.
Priority

Medium

CVSS 3 base score: 9.8

Status

Package Release Status
pluxml
Launchpad, Ubuntu, Debian
bionic Deferred
(2021-10-19)
focal Deferred
(2021-10-19)
groovy Ignored
(reached end-of-life)
hirsute Ignored
(reached end-of-life)
impish Ignored
(reached end-of-life)
jammy Deferred
(2021-10-19)
precise Does not exist

trusty Does not exist

upstream Needs triage

xenial Ignored
(end of standard support, was needs-triage)