mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-05-05 18:27:13 +00:00
MCMS 5.2.4 Arbitrary File Upload
Mingfei MCms is a complete open source content management system.MCms 5.2.4 version /file/upload.do has arbitrary file upload vulnerabilities. Attackers can upload malicious Trojan horses to control server permissions.
FOFA query rule: body="ms/1.0.0/ms.js" || body="铭飞MCMS"