Impact
A flaw in the FreeMarker Template Handler of Sanluan PublicCMS allows an attacker to supply malicious template content that is processed without proper neutralization of special elements. This template injection can lead to execution of arbitrary code on the host machine running the CMS, compromising confidentiality, integrity, and availability of the underlying system.
Affected Systems
Sanluan PublicCMS versions up to and including 6.202506.d. The vulnerability resides in the AbstractFreemarkerView.java class, specifically the doRender method within the publiccms-core module.
Risk and Exploitability
The CVSS score of 5.1 indicates medium severity. EPSS data are not available and the vulnerability is not listed in the CISA KEV catalog, suggesting that widespread exploitation may not yet be observed. Nevertheless, the issue is exploitable remotely and requires an attacker to influence template data, likely through a web interface that processes user‑controlled templates. The lack of a vendor‑issued patch at present increases the risk for systems still running affected versions.
OpenCVE Enrichment