CVE-2022-23906
28.02.2022, 23:15
CMS Made Simple v2.2.15 was discovered to contain a Remote Command Execution (RCE) vulnerability via the upload avatar function. This vulnerability is exploited via a crafted image file.Enginsight
Vendor | Product | Version |
---|---|---|
cmsmadesimple | cms_made_simple | 2.2.15 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration