Beveiligingsadvies

CVE-2022-42458

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-12-07 00:00:00
Laatst bijgewerkt 2025-04-23 14:22:12
Toegewezen door jpcert
CVSS-score 9.8
Status PUBLISHED

Beschrijving

Authentication bypass using an alternate path or channel vulnerability in bingo!CMS version1.7.4.1 and earlier allows a remote unauthenticated attacker to upload an arbitrary file. As a result, an arbitrary script may be executed and/or a file may be altered.