Permissions Vulnerability in Fuel-CMS by Daylight Studio
CVE-2020-22151
9.8CRITICAL
What is CVE-2020-22151?
A permissions vulnerability exists in Fuel-CMS version 1.4.6 that allows remote attackers to execute arbitrary code. This is achieved by uploading a crafted zip file through the upload function’s assets parameter, potentially leading to unauthorized access and control over the affected system.
