noraj/Umbraco-RCE

noraj/Umbraco-RCE

Releases0
Stars75
Umbraco CMS 7.12.4 - (Authenticated) Remote Code Execution

CVE History

CVEPublishedCVSS v3CVSS v2
7.2 HIGH

Umbraco CMS 4.11.8 through 7.15.10, and 7.12.4, allows Remote Code Execution by authenticated administrators via msxsl:script in an xsltSelection to developer/Xslt/xsltVisualize.aspx.