← Back to browse · API

CVE-2020-6142

Severity
CRITICAL
CVSS
9.9
EPSS
0.0924
Risk score
42.83
CISA KEV
No
PoC
No
Published
2020-09-01
Modified
2024-08-04
First seen
2026-08-07
Aliases
EUVD-2020-27296, GHSA-289P-HP9M-RP88
Products
n/a:OS4ED OS4Ed openSIS 7.3
Sources
euvd EUVD-2020-27296

Description

A remote code execution vulnerability exists in the Modules.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can cause local file inclusion. An attacker can send an HTTP request to trigger this vulnerability.

References