High
CVSS 8.8
Overview
File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute arbitrary code via a crafted file uploaded and downloaded to the download_url parameter in the app/admin/exts/ directory.
File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute a...
File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute arbitrary code via a crafted file uploaded and downloaded to the download_url parameter in the app/admin/exts/ directory.
This vulnerability is rated 🟠 HIGH.
Recommended actions: