Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-21547
HistoryMar 16, 2022 - 12:00 a.m.

Zenario CMS File Upload Vulnerability (CNVD-2022-21547)

2022-03-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
zenario cms
file upload
vulnerability
validation
malicious files
remote code execution

EPSS

0.035

Percentile

91.5%

Zenario CMS is an open source application from Zenario. A file upload vulnerability exists in Zenario CMS version 9.0.54156, which stems from the application’s lack of validation of uploaded files. An attacker could exploit the vulnerability to upload malicious files to remotely execute arbitrary code.