GHSA-389p-fchr-q2mg
CRITICALCVE-2022-24977ImpressCMS before 1.4.2 allows unauthenticated remote code execution via ...../// directory traversal in origName or imageName, leading to unsafe interaction with the CKEditor processImage.php script. The payload may be placed in PHPSESSIONUPLOADPROGRESS when the PHP installation supports uploadprogress.
- Affected
- < 1.4.2
- Fixed in
- 1.4.2
- Published
- 2022-02-15
- Source
- github