GXCMS V1.5 has a file upload vulnerability in the background. The vulnerability is the template management page. You can edit any template content and then rename to PHP suffix file, after calling PHP file can control the server.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T06:40:47.475Z
Reserved: 2022-05-02T00:00:00.000Z
Link: CVE-2022-30007
Updated: 2024-08-03T06:40:47.475Z
Status : Modified
Published: 2022-05-17T16:15:09.217
Modified: 2024-11-21T07:02:04.427
Link: CVE-2022-30007
No data.
OpenCVE Enrichment
No data.