CVE-2021-46036: Malicious File Upload
Published Feb 18, 2022
·Updated
An arbitrary file upload vulnerability in the component /ms/file/uploadTemplate.do of MCMS v5.2.4 allows attackers to execute arbitrary code.
Affected Software
1 affected component
Mingsoft MCMS=5.2.4
Event History
Feb 18, 2022
CVE Published
via MITRE·06:32 PM
Data Sourced
via MITRE·06:32 PM
Description
Frequently Asked Questions
1
What is CVE-2021-46036?
CVE-2021-46036 is an arbitrary file upload vulnerability in the component /ms/file/uploadTemplate.do of MCMS v5.2.4.
2
How severe is CVE-2021-46036?
CVE-2021-46036 has a severity rating of 9.8 out of 10, indicating a critical vulnerability.
3
How does CVE-2021-46036 work?
CVE-2021-46036 allows attackers to execute arbitrary code by exploiting the arbitrary file upload vulnerability in MCMS v5.2.4.
4
What software version is affected by CVE-2021-46036?
MCMS v5.2.4 is affected by CVE-2021-46036.
5
Is there a fix for CVE-2021-46036?
At the moment, no official fix has been released for CVE-2021-46036. It is recommended to apply security patches or updates provided by the vendor once they become available.