CVE-2021-42645
EUVD-2021-2960910.05.2022, 12:15
CMSimple_XH 1.7.4 is affected by a remote code execution (RCE) vulnerability. To exploit this vulnerability, an attacker must use the "File" parameter to upload a PHP payload to get a reverse shell from the vulnerable host.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cmsimple-xh | cmsimple_xh | 1.7.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration