A vulnerability has been found in shishuocms 1.1 and...
Moderate severity
Unreviewed
Published
Mar 4, 2025
to the GitHub Advisory Database
•
Updated Mar 5, 2025
Description
Published by the National Vulnerability Database
Mar 4, 2025
Published to the GitHub Advisory Database
Mar 4, 2025
Last updated
Mar 5, 2025
A vulnerability has been found in shishuocms 1.1 and classified as critical. This vulnerability affects the function handleRequest of the file src/main/java/com/shishuo/cms/action/manage/ManageUpLoadAction.java. The manipulation of the argument file leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
References