CVE-2019-19745
Contao 4.0 through 4.8.5 allows PHP local file inclusion. A back end user with access to the form generator can upload a
Contao 4.0 through 4.8.5 allows PHP local file inclusion. A back end user with access to the form generator can upload arbitrary files and execute them on the server.
HIGH · CVSS 8.8
EPSS 0.00452
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0