First published: Fri Mar 18 2022(Updated: )
Classcms v2.5 and below contains an arbitrary file upload via the component \class\classupload. This vulnerability allows attackers to execute code injection via a crafted .txt file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Classcms Classcms | <=2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.