CVE-2023-26775

Source
https://cve.org/CVERecord?id=CVE-2023-26775
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-26775.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-26775
Published
2023-04-04T15:15:09.020Z
Modified
2026-04-10T04:56:30.374965Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

File Upload vulnerability found in Monitorr v.1.7.6 allows a remote attacker t oexecute arbitrary code via a crafted file upload to the assets/php/upload.php endpoint.

References

Affected packages

Git / github.com/monitorr/monitorr

Affected ranges

Type
GIT
Repo
https://github.com/monitorr/monitorr
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "1.7.6m"
        }
    ]
}

Affected versions

1.*
1.5.0m
1.5.5m
1.6.1m
1.6.3m
1.7.6m
b0.*
b0.5
m0.*
m0.6
v0.*
v0.10.1m
v0.10.4m
v0.11.0m
v0.11.1
v0.12.0m
v0.12.4m
v0.12.7m
v0.12.8m
v0.13.3m
v0.14.0m
v0.14.1m
v0.6m
v0.8.5m
v0.8m
v0.9.0m
v0.9.3m
v0.9.5m

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-26775.json"