CVE-2020-28871: Monitorr

Critical severity, CVSS 9.8. EPSS: 85.8% chance of exploitation in the next 30 days.

Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an insecure file upload.

Affected products

Published 2021-02-10. Last modified 2026-06-17.