jkana/Gila-CMS-1.16.0-shell-upload

jkana/Gila-CMS-1.16.0-shell-upload

Releases0
Stars1

CVE History

CVEPublishedCVSS v3CVSS v2
7.2 HIGH6.5 MEDIUM

In Gila CMS 1.16.0, an attacker can upload a shell to tmp directy and abuse .htaccess through the logs function for executing PHP files.