High severity7.2NVD Advisory· Published Apr 8, 2022· Updated Jun 17, 2026
CVE-2022-27061
CVE-2022-27061
Description
AeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the Post Image function under the Admin panel. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:aerocms_project:aerocms:0.0.1:*:*:*:*:*:*:*
- AeroCMS/AeroCMSdescription
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/166659/AeroCMS-0.0.1-Shell-Upload.htmlnvdExploitThird Party AdvisoryVDB Entry
- drive.google.com/file/d/1PdF7gTUt_QuU2ObS9YUVew6orHaho-QF/viewnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.