← Back to CVE List

CVE-2020-21005

Published: 2021-06-03T14:15Z
Last Modified: 2024-11-21T05:12Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
WellCMS 2.0 beta3 is vulnerable to File Upload. A user can log in to the CMS background and upload a picture. Because the upload file type is controllable, the user can modify the upload file type to get webshell. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt