5.4
CVSSv3

CVE-2023-49444

Published: 08/12/2023 Updated: 11/12/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

An arbitrary file upload vulnerability in DoraCMS v2.1.8 allow malicious users to execute arbitrary code via uploading a crafted HTML or image file to the user avatar.

Vulnerable Product Search on Vulmon Subscribe to Product

html-js doracms 2.1.8