An issue was discovered in Pluck CMS 4.7.10-dev2 and 4.7.11. There is a file upload vulnerability that can cause a remote command execution via admin.php?action=files.
CPE | Name | Operator | Version |
---|---|---|---|
pluck | eq | 4.7.5 | |
pluck | eq | 4.7.10-dev4 | |
pluck | eq | 4.7.11-dev2 | |
pluck | eq | 4.7 | |
pluck | eq | 4.7.5-noversion | |
pluck | eq | 4.7.8-dev3 | |
pluck | eq | 4.7.6 | |
pluck | eq | 4.74 | |
pluck | eq | 4.7.11 | |
pluck | eq | 4.7.8-dev2 |