Vulnerability Details CVE-2021-35290
File Upload vulnerability in balerocms-src 0.8.3 allows remote attackers to run arbitrary code via rich text editor on /admin/main/mod-blog page.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.4%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2021-35290
-
cpe:2.3:a:balero_cms_project:balero_cms:0.8.3