| Vulnerability Name: | CVE-2020-5577 (CCN-181918) |
| Assigned: | 2020-05-13 |
| Published: | 2020-05-13 |
| Updated: | 2020-05-15 |
| Summary: | Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced 7 r.4606 (7.2.1) and earlier (Movable Type Advanced 7), Movable Type for AWS 7 r.4606 (7.2.1) and earlier (Movable Type for AWS 7), Movable Type 6.5.3 and earlier (Movable Type 6.5), Movable Type Advanced 6.5.3 and earlier (Movable Type Advanced 6.5), Movable Type 6.3.11 and earlier (Movable Type 6.3), Movable Type Advanced 6.3.11 and earlier (Movable Type 6.3), Movable Type Premium 1.29 and earlier, and Movable Type Premium Advanced 1.29 and earlier) allow remote authenticated attackers to upload arbitrary files and execute a php script via unspecified vectors.
|
| CVSS v3 Severity: | 8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) 7.7 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)| Exploitability Metrics: | Attack Vector (AV): Network Attack Complexity (AC): Low Privileges Required (PR): Low User Interaction (UI): None | | Scope: | Scope (S): Unchanged
| | Impact Metrics: | Confidentiality (C): High Integrity (I): High Availibility (A): High | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N) 4.6 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N/E:U/RL:O/RC:C)| Exploitability Metrics: | Attack Vector (AV): Network Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | | Scope: | Scope (S): Unchanged
| | Impact Metrics: | Confidentiality (C): None Integrity (I): Low Availibility (A): None |
|
| CVSS v2 Severity: | 6.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)| Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Authentication (Au): Single_Instance | | Impact Metrics: | Confidentiality (C): Partial Integrity (I): Partial Availibility (A): Partial | 5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)| Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Athentication (Au): None
| | Impact Metrics: | Confidentiality (C): None Integrity (I): Partial Availibility (A): None |
|
| Vulnerability Type: | CWE-434
|
| Vulnerability Consequences: | File Manipulation |
| References: | Source: MITRE Type: CNA CVE-2020-5577
Source: CCN Type: JVN#28806943 Multiple vulnerabilities in Movable Type
Source: XF Type: UNKNOWN movable-cve20205577-file-upload(181918)
Source: MISC Type: Third Party Advisory, VDB Entry https://jvn.jp/en/jp/JVN28806943/index.html
Source: MISC Type: Release Notes, Vendor Advisory https://movabletype.org/news/2020/05/mt-730-660-6312-released.html
Source: CCN Type: MovableType Web site MovableType.org
|
| Vulnerable Configuration: | Configuration 1: cpe:/a:sixapart:movable_type:*:*:*:*:advanced:*:*:* (Version <= 1.29)OR cpe:/a:sixapart:movable_type:*:*:*:*:premium:*:*:* (Version <= 1.29)OR cpe:/a:sixapart:movable_type:*:*:*:*:-:*:*:* (Version >= 6.3 and <= 6.3.11)OR cpe:/a:sixapart:movable_type:*:*:*:*:advanced:*:*:* (Version >= 6.3 and <= 6.3.11)OR cpe:/a:sixapart:movable_type:*:*:*:*:-:*:*:* (Version >= 6.5.0 and <= 6.5.3)OR cpe:/a:sixapart:movable_type:*:*:*:*:advanced:*:*:* (Version >= 6.5.0 and <= 6.5.3)OR cpe:/a:sixapart:movable_type:*:*:*:*:*:aws:*:* (Version >= 7.0 and <= 7.2.1)OR cpe:/a:sixapart:movable_type:*:*:*:*:-:*:*:* (Version >= 7.0 and <= 7.2.1)OR cpe:/a:sixapart:movable_type:*:*:*:*:advanced:*:*:* (Version >= 7.0 and <= 7.2.1) Configuration CCN 1: cpe:/a:sixapart:movable_type:6.5.3:*:*:*:advanced:-:*:*OR cpe:/a:sixapart:movable_type:6.3.11:*:*:*:-:*:*:*OR cpe:/a:sixapart:movable_type:6.3.11:*:*:*:advanced:*:*:*
Denotes that component is vulnerable |
| BACK |