LG SuperSign CMS allows file upload via signEzUI/playlist/edit/upload/..%2f URIs.
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
http://mamaquieroserpentester.blogspot.com/2018/09/multiple-vulnerabilities-in-lg.html | third party advisory exploit |