CVE-2020-36070: Remote code execution in Voyager

Severity: Critical

CVSS Score: 9.8

Insecure Permission vulnerability found in Yoyager v.1.4 and before allows a remote attacker to execute arbitrary code via a crafted .php file to the media component.