Semcms Shop v4.2 was discovered to contain an arbitrary file uplaod vulnerability via the component SEMCMS_Upfile.php. This vulnerability allows attackers to execute arbitrary code via uploading a crafted PHP file.
| Software | From | Fixed in |
|---|---|---|
| sem-cms / semcms | 4.2 | 4.2.x |