Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-54891
HistoryJul 29, 2022 - 12:00 a.m.

FeehiCMS arbitrary file upload vulnerability

2022-07-2900:00:00
China National Vulnerability Database
www.cnvd.org.cn
18
feehicms
php
arbitrary file upload
validation
executable code
vulnerability

EPSS

0.001

Percentile

43.0%

FeehiCMS is a Php-based CMS builder from Liufee Personal Developers.FeehiCMS version v2.1.1 is vulnerable to arbitrary file uploads. The vulnerability stems from the lack of valid validation of uploaded files by the application. An attacker can exploit the vulnerability to execute arbitrary code by creating specially crafted PHP files.

EPSS

0.001

Percentile

43.0%

Related for CNVD-2022-54891