VYPR
Critical severity9.8NVD Advisory· Published Dec 7, 2022· Updated Jun 17, 2026

CVE-2022-42458

CVE-2022-42458

Description

Authentication bypass using an alternate path or channel vulnerability in bingo!CMS version1.7.4.1 and earlier allows a remote unauthenticated attacker to upload an arbitrary file. As a result, an arbitrary script may be executed and/or a file may be altered.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Range: <=1.7.4.1
  • Shift Tech Inc./bingo!CMSv5
    Range: version1.7.4.1 and earlier

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.