Vulnerability Details CVE-2012-10054
Umbraco CMS versions prior to 4.7.1 are vulnerable to unauthenticated remote code execution via the codeEditorSave.asmx SOAP endpoint, which exposes a SaveDLRScript operation that permits arbitrary file uploads without authentication. By exploiting a path traversal flaw in the fileName parameter, attackers can write malicious ASPX scripts directly into the web-accessible /umbraco/ directory and execute them remotely.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 79.0%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2012-10054
-
cpe:2.3:a:umbraco:umbraco_cms:4.5.2
-
cpe:2.3:a:umbraco:umbraco_cms:4.6.0
-
cpe:2.3:a:umbraco:umbraco_cms:4.7.0