vendor:
Schlix CMS
by:
Emir Polat
9.8
CVSS
HIGH
Arbitary File Upload and Directory Traversal
434
CWE
Product Name: Schlix CMS
Affected Version From: 2.2.6-6
Affected Version To: 2.2.6-6
Patch Exists: No
Related CWE: N/A
CPE: schlix-cms
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Ubuntu 20.04 (Firefox)
2021
Schlix CMS 2.2.6-6 – Arbitary File Upload And Directory Traversal Leads To RCE (Authenticated)
An authorized user can upload a file with a .phar extension to a path of his choice and control the content as he wishes. This causes RCE vulnerability.
Mitigation:
Disable file uploads, restrict access to the upload directory, and use a web application firewall.