Описание
GeniXCMS arbitrary PHP code execution
In the Upload Modules page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a module.
Пакеты
Наименование
genix/cms
composer
Затронутые версииВерсия исправления
= 1.1.4
Отсутствует
Связанные уязвимости
CVSS3: 8.8
nvd
больше 8 лет назад
In the Upload Modules page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a module.