Back to search
CVE-2021-20850
Published: Nov 24, 2021
Modified: Aug 3, 2024
PUBLISHED
Description
PowerCMS XMLRPC API of PowerCMS 5.19 and earlier, PowerCMS 4.49 and earlier, PowerCMS 3.295 and earlier, and PowerCMS 2 Series (End-of-Life, EOL) allows a remote attacker to execute an arbitrary OS command via unspecified vectors.
| Vendor | Product | Versions |
|---|---|---|
Alfasado Inc. | PowerCMS XMLRPC API | affected PowerCMS 5.19 and earlier, PowerCMS 4.49 and earlier, PowerCMS 3.295 and earlier, PowerCMS 2 Series (End-of-Life, EOL) |
References
https://jvn.jp/en/jp/JVN17645965/index.html
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now