High severity7.2NVD Advisory· Published Aug 23, 2021· Updated Jun 17, 2026
CVE-2021-39608
CVE-2021-39608
Description
Remote Code Execution (RCE) vulnerabilty exists in FlatCore-CMS 2.0.7 via the upload addon plugin, which could let a remote malicious user exeuct arbitrary php code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:flatcore:flatcore-cms:2.0.7:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:flatcore:flatcore-cms:2.0.7:*:*:*:*:*:*:*
- (no CPE)range: =2.0.7
- FlatCore-CMS/FlatCore-CMSdescription
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/164047/FlatCore-CMS-2.0.7-Remote-Code-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- github.com/flatCore/flatCore-CMS/issues/52nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.