PT-2022-12681 · Mcms+1 · Mcms+1

Lz2Y&R2

·

Published

2022-03-04

·

Updated

2022-07-12

·

CVE-2021-46384

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MCMS versions 5.2.5 and earlier
Description The issue allows an unauthenticated attacker with network access via http to compromise MCMS, resulting in the takeover of MCMS. The attack vector is: ${"freemarker.template.utility.Execute"?new()("calc")}. This is a pre-auth RCE vulnerability that enables the execution of arbitrary code remotely.
Recommendations For MCMS versions 5.2.5 and earlier, as a temporary workaround, consider restricting access to the Execute function in the freemarker template utility to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Authentication

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-46384
GHSA-QWH6-XWJ4-9CJG

Affected Products

Mcms
Freemarker