### [CVE-2020-18185](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-18185) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description class.plx.admin.php in PluXml 5.7 allows attackers to execute arbitrary PHP code by modify the configuration file in a linux environment. ### POC #### Reference - https://github.com/pluxml/PluXml/issues/321 - https://github.com/pluxml/PluXml/issues/321 #### Github No PoCs found on GitHub currently.