Описание
MCMS vulnerable to arbitrary code execution via crafted thumbnail
File upload vulnerability in MCMS 5.0 allows attackers to execute arbitrary code via a crafted thumbnail. A different vulnerability than CVE-2022-31943.
Пакеты
Наименование
net.mingsoft:ms-mcms
maven
Затронутые версииВерсия исправления
<= 5.0.0
Отсутствует
Связанные уязвимости
CVSS3: 8.8
nvd
больше 2 лет назад
File upload vulnerability in MCMS 5.0 allows attackers to execute arbitrary code via a crafted thumbnail. A different vulnerability than CVE-2022-31943.