7.5
CVSSv2

CVE-2021-46361

Published: 11/02/2022 Updated: 22/02/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue in the Freemark Filter of Magnolia CMS v6.2.11 and below allows malicious users to bypass security restrictions and execute arbitrary code via a crafted FreeMarker payload.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

magnolia-cms magnolia cms

Github Repositories

CVE-2021-46361: FreeMarker Restriction Bypass in Magnolia CMS

CVE-2021-46361: FreeMarker Restriction Bypass in Magnolia CMS An issue in the FreeMarker Filter of Magnolia CMS v6211 and below allows attackers to bypass security restrictions and execute arbitrary code via a crafted FreeMarker payload Vendor Disclosure: The vendor's disclosure and fix for this vulnerability can be found here Proof Of Concept: More details and the exp