Security Advisory

CVE-2016-2242

9.8
CRITICAL

Vulnerability Description

Exponent CMS 2.x before 2.3.7 Patch 3 allows remote attackers to execute arbitrary code via the sc parameter to install/index.php.
Published Date January 23, 2017
Official Source NIST NVD Advisory