Security Advisory
CVE-2022-24651
9.8
CRITICAL
Vulnerability Description
sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in PHP code execution through /user/upload/upload.
Published Date
March 10, 2022
Official Source
NIST NVD Advisory