CVE-2022-46135

Published
View on NVD ↗
CVSS v3
7.2
HIGH
CVSS v2
N/A
Affected
1
PROJECT

Description

In AeroCms v0.0.1, there is an arbitrary file upload vulnerability at /admin/posts.php?source=edit_post , through which we can upload webshell and control the web server.

MegaTKC/AeroCMS
MegaTKC/AeroCMSUNAVAILABLE
Aero is a simple and easy to use CMS (Content Management System) designed to create fast and powerful web applications!
GitHubGitHub
24