Total vulnerabilities in the database
A vulnerability has been discovered in Agentejo Cockpit CMS v0.5.5 that consists in an arbitrary file upload in ‘/media/api’ parameter via post request. An attacker could upload files to the server, compromising the entire infrastructure.
Software | From | Fixed in |
---|---|---|
![]() |
- | 2.7.0 |
agentejo / cockpit | 0.5.5 | 0.5.5.x |