Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2022-36579
Disclosure Date: August 19, 2022 (last updated October 08, 2023)
Wellcms 2.2.0 is vulnerable to Cross Site Request Forgery (CSRF).
0
Attacker Value
Unknown
CVE-2020-21005
Disclosure Date: June 03, 2021 (last updated February 22, 2025)
WellCMS 2.0 beta3 is vulnerable to File Upload. A user can log in to the CMS background and upload a picture. Because the upload file type is controllable, the user can modify the upload file type to get webshell.
0