CVE-2021-27693

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
02/09/2022
Last modified:
08/09/2022

Description

Server-side Request Forgery (SSRF) vulnerability in PublicCMS before 4.0.202011.b via /publiccms/admin/ueditor when the action is catchimage.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:publiccms:publiccms:*:*:*:*:*:*:*:* 4.0.202011.b (excluding)