Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-24651

sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in PHP code execution through /user/upload/upload.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.026
EPSS Ranking 85.2%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2022-24651
  • Sentcms » Sentcms » Version: 4.0.0
    cpe:2.3:a:sentcms:sentcms:4.0.0


Contact Us

Shodan ® - All rights reserved