High severity7.5NVD Advisory· Published Nov 3, 2016· Updated May 6, 2026
CVE-2016-7452
CVE-2016-7452
Description
The Pixidou Image Editor in Exponent CMS prior to v2.3.9 patch 2 could be used to upload a malicious file to any folder on the site via a cpi directory traversal.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/exponentcms/exponent-cms/commit/c1092f167cc6c78dc8bf9bf149946c5219413df3nvdIssue TrackingPatch
- www.securityfocus.com/bid/93045nvdThird Party AdvisoryVDB Entry
- github.com/exponentcms/exponent-cms/releases/tag/v2.4.0nvd
News mentions
0No linked articles in our index yet.