Headline
CVE-2022-23329: Jspxcms 存在命令执行10.2.0版本存在命令执行【模板上传】 · Issue #I4QAZN · jspxcms/Jspxcms - Gitee.com
A vulnerability in ${"freemarker.template.utility.Execute"?new() of UJCMS Jspxcms v10.2.0 allows attackers to execute arbitrary commands via uploading malicious files.
Java
1
https://gitee.com/jspxcms/Jspxcms.git
git@gitee.com:jspxcms/Jspxcms.git
jspxcms
Jspxcms
Jspxcms