Arbitrary PHP Code Execution Vulnerability in BlackCat CMS 1.2

Arbitrary PHP Code Execution Vulnerability in BlackCat CMS 1.2

CVE-2017-14050 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:P/A:P

In BlackCat CMS 1.2, backend/addons/install.php allows remote authenticated users to execute arbitrary PHP code via a ZIP archive that contains a .php file.

Learn more about our Cms Pen Testing.