ZeroHour

CVE-2022-28606

CVSS 3.1
9.8 critical
EPSS
1%p72
Published
()
Modified
Description

An arbitrary file upload vulnerability exists in Wenzhou Huoyin Information Technology Co., Ltd. BossCMS 1.0, which can be exploited by an attacker to gain control of the server.

Vendors
bosscms
Products
bosscms
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.