Security Advisory

CVE-2022-46610

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-01-10 00:00:00
Last updated 2025-04-09 15:41:48
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

72crm v9 was discovered to contain an arbitrary file upload vulnerability via the avatar upload function. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.