CVE-2023-50692

Published
View on NVD ↗
CVSS v3
8.8
HIGH
CVSS v2
N/A
Affected
1
PROJECT

Description

File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute arbitrary code via a crafted file uploaded and downloaded to the download_url parameter in the app/admin/exts/ directory.

极致CMS(以下简称:JIZHICMS)是一款开源免费,无商业授权的建站系统。
GitHubGitHub
212