CVE-2019-9050
23.02.2019, 19:29
An issue was discovered in Pluck 4.7.9-dev1. It allows administrators to execute arbitrary code by using action=installmodule to upload a ZIP archive, which is then extracted and executed.Enginsight
Vendor | Product | Version |
---|---|---|
pluck-cms | pluck | 4.7.9:dev1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration