Critical severity9.8NVD Advisory· Published Mar 10, 2022· Updated Jun 17, 2026
CVE-2022-24651
CVE-2022-24651
Description
sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in PHP code execution through /user/upload/upload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- sentcms/sentcmsdescription
Patches
Vulnerability mechanics
References
1- blog.hanayuzu.top/articles/37dacab4.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.