VYPR
High severity7.2NVD Advisory· Published Mar 23, 2023· Updated Jun 17, 2026

CVE-2022-30037

CVE-2022-30037

Description

XunRuiCMS v4.3.3 to v4.5.1 vulnerable to PHP file write and CMS PHP file inclusion, allows attackers to execute arbitrary php code, via the add function in cron.php.

Affected products

3
  • cpe:2.3:a:xunruicms:xunruicms:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:xunruicms:xunruicms:*:*:*:*:*:*:*:*range: >=4.3.3,<=4.5.1
    • (no CPE)
    • (no CPE)range: 4.3.3 to 4.5.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.