2018-09-21 15:00:00
mitre
PUBLISHED
DedeCMS 5.7 SP2 allows XML injection, and resultant remote code execution, via a "