CVE-2012-10054

Severity CVSS v4.0:
CRITICAL
Type:
CWE-22 Path Traversal
Publication date:
13/08/2025
Last modified:
19/09/2025

Description

Umbraco CMS versions prior to 4.7.1 are vulnerable to unauthenticated remote code execution via the codeEditorSave.asmx SOAP endpoint, which exposes a SaveDLRScript operation that permits arbitrary file uploads without authentication. By exploiting a path traversal flaw in the fileName parameter, attackers can write malicious ASPX scripts directly into the web-accessible /umbraco/ directory and execute them remotely.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:umbraco:umbraco_cms:*:*:*:*:*:*:*:* 4.7.1 (excluding)