CVE-2020-18912: Earcms Ear

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

An issue found in Earcms Ear App v.20181124 allows a remote attacker to execute arbitrary code via the uload/index-uplog.php.

Affected products

  • Earcms Ear: version 2018-11-24 only

Published 2023-08-29. Last modified 2026-06-17.