9.8
CVSSv3

CVE-2022-48006

Published: 30/01/2023 Updated: 07/02/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An arbitrary file upload vulnerability in taocms v3.0.2 allows malicious users to execute arbitrary code via a crafted PHP file. This vulnerability is exploited via manipulation of the upext variable at /include/Model/Upload.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

taogogo taocms 3.0.2