Security Advisory
CVE-2021-36532
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Race condition vulnerability discovered in portfolioCMS 1.0 allows remote attackers to run arbitrary code via fileExt parameter to localhost/admin/uploads.php.