DedeBIZ v6 was discovered to contain a remote code execution vulnerability in sys_info.php.
References
Link | Resource |
---|---|
https://github.com/whitehatl/Vulnerability/blob/main/web/dedebiz/6.0.0/sys_info.poc.md | Exploit Mitigation Third Party Advisory |
Configurations
Information
Published : 2022-08-17 13:15
Updated : 2022-08-18 18:52
NVD link : CVE-2022-36215
Mitre link : CVE-2022-36215
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
dedebiz
- dedecmsv6