ZeroHour

CVE-2022-45783

CVSS 3.1
6.5 medium
EPSS
8%p95
Published
()
Modified
Description

An issue was discovered in dotCMS core 4.x through 22.10.2. An authenticated directory traversal vulnerability in the dotCMS API can lead to Remote Code Execution.

Vendors
dotcms
Products
dotcms
Weakness
CWE-22
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.