Critical severity9.8NVD Advisory· Published Dec 7, 2022· Updated Jun 17, 2026
CVE-2022-42458
CVE-2022-42458
Description
Authentication bypass using an alternate path or channel vulnerability in bingo!CMS version1.7.4.1 and earlier allows a remote unauthenticated attacker to upload an arbitrary file. As a result, an arbitrary script may be executed and/or a file may be altered.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Shift Tech Inc./bingo!CMSv5Range: version1.7.4.1 and earlier
Patches
Vulnerability mechanics
References
2- jvn.jp/en/jp/JVN74592196/index.htmlnvdThird Party Advisory
- www.bingo-cms.jp/information/20221011.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.