Security Advisory

CVE-2022-4136

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-11-24 00:00:00
Last updated 2025-04-14 17:48:17
Assigner @huntrdev
CVSS score 8.6
State PUBLISHED

Description

Dangerous method exposed which can lead to RCE in qmpass/leadshop v1.4.15 allows an attacker to control the target host by calling any function in leadshop.php via the GET method.