Security Advisory
CVE-2021-47788
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
WebsiteBaker 2.13.0 contains an authenticated remote code execution vulnerability that allows users with language editing permissions to execute arbitrary code. Attackers can exploit the language installation endpoint by manipulating language installation parameters to achieve remote code execution on the server.