CVE-2020-6754 is a critical directory traversal vulnerability affecting dotCMS versions prior to 5.2.4. This flaw allows unauthenticated attackers to read or execute files within protected directories, specifically $TOMCAT_HOME/webapps/ROOT/assets. Attackers can also upload temporary files, such as JSP files, to /webapps/ROOT/assets/tmp_upload, leading to remote command execution with the privileges of the dotCMS application. Rated with a CVSS score of 9.8 (Critical), this vulnerability requires no user interaction or authentication, making it easily exploitable over the network with low attack complexity. The potential impact includes complete compromise of confidentiality, integrity, and availability of the affected system. While the EPSS score indicates a higher-than-average likelihood of exploitation, there is currently no public exploit code available in Metasploit, Nuclei, or ExploitDB. Furthermore, there is no evidence of active exploitation, and community discussion or media coverage for this CVE is minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 5.2.4CPE matchmatch criteria | cpe:2.3:a:dotcms:dotcms:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.