XMLRPC - RCE in MovableTypePoC
CVE-2021-20837 XMLRPC - RCE in MovableTypePoC
Movable Type 7 r.5002 and previous versions (Movable Type 7 Series), Movable Type 6.8.2 and previous versions (Movable Type 6 Series), Movable Type Advanced 7 r.5002 and previous versions (Movable Type Advanced 7 Series), Movable Type Advanced 6.8.2 and previous versions (Movable Type Advanced 6 Series), Movable Type Premium 1.46 and previous versions, and Movable Type Premium Advanced 1.46 and previous versions allow remote malicious users to execute arbitrary OS commands via unspecified vectors. Note that all versions of Movable Type 4.0 or later including unsupported (End-of-Life, EOL) versions are also affected by this vulnerability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sixapart movable type |