cve/2022/CVE-2022-23906.md
2024-05-25 21:48:12 +02:00

652 B

CVE-2022-23906

Description

CMS Made Simple v2.2.15 was discovered to contain a Remote Command Execution (RCE) vulnerability via the upload avatar function. This vulnerability is exploited via a crafted image file.

POC

Reference

No PoCs from references.

Github