SiteServerCMS 5.X has a Remote-download-Getshell-vulnerability via /SiteServer/Ajax/ajaxOtherService.aspx.
References
Link | Resource |
---|---|
https://www.slpyue.com | Broken Link |
https://github.com/we1h0/SiteServer-CMS-Remote-download-Getshell | Exploit Mitigation Third Party Advisory |
Configurations
Information
Published : 2022-08-25 17:15
Updated : 2022-08-31 09:27
NVD link : CVE-2022-36226
Mitre link : CVE-2022-36226
JSON object : View
CWE
CWE-668
Exposure of Resource to Wrong Sphere
Products Affected
siteservercms_project
- siteservercms