An arbitrary file upload vulnerability exists in Wenzhou Huoyin Information Technology Co., Ltd. BossCMS 1.0, which can be exploited by an attacker to gain control of the server.
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
https://www.cnvd.org.cn/flaw/show/CNVD-2022-04804 | third party advisory |
https://www.cnvd.org.cn/patchInfo/show/313666 | third party advisory |
https://www.bosscms.net/ | broken link |