PT-2025-33089 · Unknown · Umbraco Cms
Published
2025-08-13
·
Updated
2025-08-14
·
CVE-2012-10054
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Umbraco CMS versions prior to 4.7.1
Description:
Umbraco CMS versions prior to 4.7.1 are susceptible to unauthenticated remote code execution through the
codeEditorSave.asmx API endpoint. This endpoint exposes a SaveDLRScript operation that allows arbitrary file uploads without authentication. Exploiting a path traversal flaw in the fileName parameter enables attackers to write malicious ASPX scripts directly into the web-accessible /umbraco/ directory and execute them remotely.Recommendations:
Update Umbraco CMS to version 4.7.1 or later.
Exploit
Fix
RCE
Path traversal
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Umbraco Cms