CVE-2026-5333
A security flaw has been discovered in DefaultFuction Content-Management-System 1.0. This issue affects some unknown processing of the file /admin/tools.php. The manipulation of the argument host results in command injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
Faiblesse
A security flaw has been discovered in DefaultFuction Content-Management-System 1.0. This issue affects some unknown processing of the file /admin/tools.php. The manipulation of the argument host results in command injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
Produits concernés
- defaultfuction content_management_system
Références
- https://github.com/DefaultFuction/Content-Management-System/
- https://github.com/DefaultFuction/Content-Management-System/issues/1
- https://github.com/DefaultFuction/Content-Management-System/issues/1#issue-4082558620
- https://vuldb.com/submit/780849
- https://vuldb.com/vuln/354667
- https://vuldb.com/vuln/354667/cti
Trouvez la faille avant un attaquant.
Connectez-vous avec GitHub et lancez votre premier audit en moins d'une minute. L'offre gratuite ne nécessite aucune carte bancaire.