CVE-2020-7864: DEXT5 Editor

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

Parameter manipulation can bypass authentication to cause file upload and execution. This will execute the remote code. This issue affects: Raonwiz DEXT5Editor versions prior to 3.5.1405747.1100.03.

Affected products

  • DEXT5 DEXT5 Editor: before 3.5.1405747.1100.03 (fixed in 3.5.1405747.1100.03)

Published 2021-06-15. Last modified 2026-06-17.