Security Advisory

CVE-2021-40373

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-09-10 13:33:55
Last updated 2024-08-04 02:44:09
Assigner mitre
State PUBLISHED

Description

playSMS before 1.4.5 allows Arbitrary Code Execution by entering PHP code at the #tabs-information-page of core_main_config, and then executing that code via the index.php?app=main&inc=core_welcome URI.