October CMS Build 465 XSS / File Read / File Deletion / CSV Injection
Posted by deepcore on August 4, 2020 – 3:18 am
October CMS builds 465 and below suffer from arbitrary file read, arbitrary file deletion, file uploading to arbitrary locations, persistent and reflective cross site scripting, and CSV injection vulnerabilities.
Post a reply
You must be logged in to post a comment.