Beveiligingsadvies

CVE-2022-50898

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-01-13 22:51:44
Laatst bijgewerkt 2026-01-29 13:43:59
Toegewezen door VulnCheck
CVSS-score 8.8
Status PUBLISHED

Beschrijving

NanoCMS 0.4 contains an authenticated file upload vulnerability that allows remote code execution through unvalidated page content creation. Authenticated attackers can upload PHP files with arbitrary code to the server's pages directory by exploiting the page creation mechanism without proper input sanitization.