Exponent CMS 0.96.3 and later versions performs a chmod on uploaded files to give them execute permissions, which allows remote malicious users to execute arbitrary code.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
exponent exponent 0.94 |
||
exponent exponent 0.95 |
||
exponent exponent 0.96.1 |
||
exponent exponent 0.96.3 |
||
exponent exponent 0.96.4 |