Description
An arbitrary file upload vulnerability in the component /workplace#!explorer of Alkacon OpenCMS v15.0 allows attackers to execute arbitrary code via uploading a crafted PNG file.
Remediation
References
https://www.exploit-db.com/exploits/51564
Related Vulnerabilities
CVE-2023-47320 Vulnerability in maven package org.silverpeas.core:silverpeas-core-war
CVE-2022-21144 Vulnerability in npm package libxmljs
CVE-2022-35131 Vulnerability in npm package joplin
CVE-2023-43123 Vulnerability in maven package org.apache.storm:storm-pmml-examples
CVE-2022-23458 Vulnerability in maven package org.webjars.npm:tui-grid