EmpireCMS V7.5 allows remote malicious users to upload and execute arbitrary code via ..%2F directory traversal in a .php filename in the upload/e/admin/ecmscom.php path parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phome empirecms 7.5 |