HuoCMS V3.5.1 and before is vulnerable to file upload, which allows attackers to take control of the target server
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
https://github.com/yggcwhat/test/blob/main/README.md | exploit third party advisory |
https://github.com/yggcwhat/CVE-2025-46078/ | exploit third party advisory |