Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-36426


File Upload vulnerability in phpwcms 1.9.25 allows remote attackers to run arbitrary code via crafted file upload to include/inc_lib/general.inc.php.


Published

2023-02-03T18:15:09.370

Last Modified

2025-03-26T18:15:16.180

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-434
  • Type: Secondary
    CWE-434

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application phpwcms phpwcms < 1.9.26 Yes

References