GXCMS V1.5 has a file upload vulnerability in the background. The vulnerability is the template management page. You can edit any template content and then rename to PHP suffix file, after calling PHP file can control the server.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T06:40:47.475Z
Reserved: 2022-05-02T00:00:00
Link: CVE-2022-30007
Updated: 2024-08-03T06:40:47.475Z
Status : Modified
Published: 2022-05-17T16:15:09.217
Modified: 2024-11-21T07:02:04.427
Link: CVE-2022-30007
No data.
OpenCVE Enrichment
No data.