Vulnerability Details CVE-2022-28606
An arbitrary file upload vulnerability exists in Wenzhou Huoyin Information Technology Co., Ltd. BossCMS 1.0, which can be exploited by an attacker to gain control of the server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.014
EPSS Ranking 70.5%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2022-28606
-
cpe:2.3:a:bosscms:bosscms:1.0.0