CVE-2021-26794

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
23/09/2021
Last modified:
29/09/2021

Description

Privilege escalation in 'upload.php' in FrogCMS SentCMS v0.9.5 allows attacker to execute arbitrary code via crafted php file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:frogcms_project:frogcms:0.9.5:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools