Remote Code Execution Vulnerability in MingSoft MCMS
CVE-2021-46384
9.8CRITICAL
What is CVE-2021-46384?
The MingSoft MCMS, up to version 5.2.5, has a vulnerability that allows unauthenticated attackers to execute arbitrary code remotely. This pre-authentication RCE vulnerability can be exploited by an attacker with network access via HTTP, enabling them to compromise the MCMS system. Successful exploitation can lead to unauthorized control over the application, increasing risks to the integrity and confidentiality of the system.
