CVE-2022-24651
EUVD-2022-2952610.03.2022, 17:46
sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in PHP code execution through /user/upload/upload.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sentcms | sentcms | 4.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration