CVE-2022-44118: Critical severity DedeBIZ Dedecmsv6 vulnerability
Published Nov 23, 2022
·Updated
dedecmdv6 v6.1.9 is vulnerable to Remote Code Execution (RCE) via filemanagecontrol.php.
Affected Software
1 affected component
DedeBIZ Dedecmsv6=6.1.9
Event History
Nov 23, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-44118?
CVE-2022-44118 has a high severity rating due to its potential for remote code execution.
2
How do I fix CVE-2022-44118?
To fix CVE-2022-44118, update Dedecmsv6 to a version that addresses this vulnerability.
3
What versions of Dedecmsv6 are affected by CVE-2022-44118?
CVE-2022-44118 affects Dedecmsv6 version 6.1.9 specifically.
4
What is the impact of CVE-2022-44118?
CVE-2022-44118 allows an attacker to execute arbitrary code on the server, potentially compromising the system.
5
Can CVE-2022-44118 be exploited remotely?
Yes, CVE-2022-44118 can be exploited remotely via the file_manage_control.php component.