PT-2022-9891 · Unknown · Horizontcms
Published
2022-04-05
·
Updated
2022-04-15
·
CVE-2021-28428
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
HorizontCMS versions prior to 1.0.0-beta.3
Description
The issue allows for remote code execution by uploading specific files, such as .htaccess and *.hello files, through the Media Files upload functionality. This bypasses the filter that was put in place to restrict PHP extensions, thus allowing the execution of PHP code.
Recommendations
For versions prior to 1.0.0-beta.3, update to version 1.0.0-beta.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the Media Files upload functionality to minimize the risk of exploitation.
Fix
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Horizontcms