capture0x/leptoncms

capture0x/leptoncms

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
7.2 HIGH

An arbitrary file upload vulnerability in LEPTON v7.0.0 allows authenticated attackers to execute arbitrary PHP code by uploading this code to the backend/languages/index.php languages area.