Description
An arbitrary file upload vulnerability was discovered in MCMS 5.2.7, allowing an attacker to execute arbitrary code through a crafted ZIP file.
Remediation
References
https://gitee.com/mingSoft/MCMS/issues/I56AID
Related Vulnerabilities
CVE-2019-13127 Vulnerability in maven package org.webjars.npm:mxgraph
CVE-2023-48910 Vulnerability in maven package io.github.microcks:microcks
CVE-2021-43138 Vulnerability in maven package org.webjars.npm:async
CVE-2018-1000632 Vulnerability in maven package dom4j:dom4j
CVE-2021-22096 Vulnerability in maven package org.springframework:spring-webflux