Security Advisory

CVE-2016-10759

9.8
CRITICAL

Vulnerability Description

The Xinha plugin in Precurio 2.1 allows Directory Traversal, with resultant arbitrary code execution, via ExtendedFileManager/Classes/ExtendedFileManager.php because ExtendedFileManager can be used to rename the .htaccess file that blocks .php uploads.
Published Date May 24, 2019
Official Source NIST NVD Advisory