CVE-2021-47938: ImpressCMS 1.4.2 Remote Code Execution via Autotasks
ImpressCMS 1.4.2 contains a remote code execution vulnerability in the autotasks administrative interface that allows authenticated attackers to execute arbitrary PHP code by injecting malicious code into the satcode parameter. Attackers can authenticate, submit a POST request to /modules/system/admin.php?fct=autotasks&op=mod with crafted satcode containing PHP commands, which creates an executable file that accepts arbitrary commands via GET parameters.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-47938?
CVE-2021-47938 has been classified as a critical severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2021-47938?
To mitigate CVE-2021-47938, upgrade to a patched version of ImpressCMS that resolves this vulnerability.
What versions are affected by CVE-2021-47938?
CVE-2021-47938 specifically affects ImpressCMS version 1.4.2.
What is the impact of exploiting CVE-2021-47938?
Exploitation of CVE-2021-47938 allows authenticated attackers to execute arbitrary PHP code on the server.
Who is vulnerable to CVE-2021-47938?
Any user of ImpressCMS version 1.4.2 with access to the autotasks administrative interface is vulnerable to CVE-2021-47938.