PluXml Blog v5.8.9 was discovered to contain a remote code execution (RCE) vulnerability in the Static Pages feature. This vulnerability is exploited via injecting a crafted payload into the Content field.
References
Link | Resource |
---|---|
https://github.com/capture0x/PluXml-RCE/blob/main/PluXml.txt | Exploit |
Configurations
History
No history.
Information
Published : 2024-01-25 21:15
Updated : 2024-01-29 15:57
NVD link : CVE-2024-22636
Mitre link : CVE-2024-22636
CVE.ORG link : CVE-2024-22636
JSON object : View
Products Affected
pluxml
- pluxml
CWE