CVE-2020-23574: Sysax Multi Server

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

When uploading a file in Sysax Multi Server 6.90, an authenticated user can modify the filename="" parameter in the uploadfile_name1.htm form to a length of 368 or more bytes. This will create a buffer overflow condition, causing the application to crash.

Affected products

  • Sysax Multi Server: version 6.90 only

Published 2020-08-19. Last modified 2026-06-17.