SiteServer CMS v7.x allows attackers to execute arbitrary code via a crafted plug-in.
Link | Tags |
---|---|
https://github.com/siteserver/cms | third party advisory product |
http://siteserver.com | not applicable |
https://github.com/Richard-Tang/SSCMS-PluginShell/blob/main/Detail.md | third party advisory exploit |
https://github.com/siteserver/cms/issues/3386 | issue tracking exploit third party advisory |