CVE Database
/

CVE-2022-42458

Back to search

CVE-2022-42458

Published: Dec 7, 2022

Modified: Apr 23, 2025

PUBLISHED

Description

Authentication bypass using an alternate path or channel vulnerability in bingo!CMS version1.7.4.1 and earlier allows a remote unauthenticated attacker to upload an arbitrary file. As a result, an arbitrary script may be executed and/or a file may be altered.

VendorProductVersions

Shift Tech Inc.

bingo!CMS

affected
version1.7.4.1 and earlier

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now