Showing 2 vulnerabilities on this page for mozilocms

Signals CISA KEV Ransomware Nuclei
mozilo vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

MoziloCMS 3.0 - Remote Code Execution (RCE)

An arbitrary file upload vulnerability in the component /admin/index.php of moziloCMS v3.0 allows attackers to execute arbitrary code via uploading a crafted file.

CWE-434Sep 10, 2024
CVSS7.2v3.1EPSS16.2%PoCs2SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

An arbitrary file upload vulnerability in the file handling module of moziloCMS v2.0 allows attackers to bypass extension restrictions via file renaming, potentially leading to unauthorized file execution or storage of malicious content.

CWE-434Apr 22, 2024
CVSS6.5v3.1EPSS0.759%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX