Описание
GeniXCMS arbitrary PHP code execution
In the Install Themes page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a theme.
Пакеты
Наименование
genix/cms
composer
Затронутые версииВерсия исправления
= 1.1.4
Отсутствует
Связанные уязвимости
CVSS3: 8.8
nvd
больше 8 лет назад
In the Install Themes page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a theme.