Cray0nLee/CVE

Cray0nLee/CVE

Releases0
CVE Payload

CVE History

CVEPublishedCVSS v3CVSS v2
8.8 HIGH

In PerfreeBlog version 4.0.11, regular users can exploit the arbitrary file upload vulnerability in the attach component to upload arbitrary files and execute code within them.

4.8 MEDIUM

Stored cross-site scripting vulnerability exists in PerfreeBlog v4.0.11 in the website name field of the backend system settings interface allows an attacker to insert and execute arbitrary malicious code.