Critical severity9.8NVD Advisory· Published Mar 10, 2022· Updated Jun 17, 2026
CVE-2022-24652
CVE-2022-24652
Description
sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in php code execution in /admin/upload/upload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- sentcms/sentcmsdescription
Patches
Vulnerability mechanics
References
1- blog.hanayuzu.top/articles/37dacab4.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.