Beveiligingsadvies

CVE-2024-1527

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-03-12 15:19:52
Laatst bijgewerkt 2024-08-08 18:57:16
Toegewezen door INCIBE
CVSS-score 9.8
Status PUBLISHED

Beschrijving

Unrestricted file upload vulnerability in CMS Made Simple, affecting version 2.2.14. This vulnerability allows an authenticated user to bypass the security measures of the upload functionality and potentially create a remote execution of commands via webshell.