High severity7.2NVD Advisory· Published Mar 23, 2023· Updated Jun 17, 2026
CVE-2022-30037
CVE-2022-30037
Description
XunRuiCMS v4.3.3 to v4.5.1 vulnerable to PHP file write and CMS PHP file inclusion, allows attackers to execute arbitrary php code, via the add function in cron.php.
Affected products
3Patches
Vulnerability mechanics
References
1- weltolk.github.io/p/xunruicms-v4.3.3-to-v4.5.1-backstage-code-injection-vulnerabilityfile-write-and-file-inclusion/nvdExploitTechnical DescriptionThird Party Advisory
News mentions
0No linked articles in our index yet.