In Wcms 0.3.2, an attacker can send a crafted request from a vulnerable web application backend server /wcms/wex/html.php via the finish parameter and the textAreaCode parameter. It can write arbitrary strings into custom file names and upload any files, and write malicious code to execute scripts to trigger command execution.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/vedees/wcms/issues/15 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-05-22T00:00:00
Updated: 2024-08-02T14:56:35.346Z
Reserved: 2023-04-29T00:00:00
Link: CVE-2023-31689
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-05-22T20:15:10.887
Modified: 2024-11-21T08:02:09.323
Link: CVE-2023-31689
Redhat
No data.