CVE-2022-23389: OS Command Injection
Published Feb 14, 2022
·Updated
PublicCMS v4.0 was discovered to contain a remote code execution (RCE) vulnerability via the cmdarray parameter.
Affected Software
1 affected component
PublicCMS publiccms=4.0
Event History
Feb 14, 2022
CVE Published
via MITRE·08:48 PM
Data Sourced
via MITRE·08:48 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID is CVE-2022-23389.
2
What is the severity of CVE-2022-23389?
The severity of CVE-2022-23389 is critical (9.8).
3
What is the affected software for CVE-2022-23389?
The affected software is PublicCMS v4.0.
4
What is the description of CVE-2022-23389?
CVE-2022-23389 is a remote code execution (RCE) vulnerability in PublicCMS v4.0 via the cmdarray parameter.
5
Is there a fix available for CVE-2022-23389?
Currently, there is no known fix available for CVE-2022-23389. It is recommended to update to a newer version when a fix becomes available.