MidnightBSD

Advisories for totalcms

CVE-2023-36212

File Upload vulnerability in Total CMS v.1.7.4 allows a remote attacker to execute arbitrary code via a crafted PHP file to the edit page function.

Products Affected

Vendor Product Version
totalcms total_cms 1.7.4