Permissions vulnerability in Fuel-CMS v.1.4.6 allows a remote malicious user to execute arbitrary code via a crafted zip file to the assests parameter of the upload function.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
thedaylightstudio fuel cms 1.4.6 |