← voltar
CVE-2025-3585

westboy CicadasCMS JSP Parser upload unrestricted upload

CVSS 5.3 MEDIUMEPSS 0.4%CWE-284CWE-434
A vulnerability classified as critical has been found in westboy CicadasCMS 1.0. This affects an unknown part of the file /upload/ of the component JSP Parser. The manipulation of the argument File leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
Produtos afetados
westboy · CicadasCMS

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →