CVE-2021-46115
jpress
jpress 4.2.0 is vulnerable to RCE via io.jpress.web.admin._TemplateController#doUploadFile. The admin panel provides a function through which attackers can upload templates and inject some malicious code.
- CVSS
- 7.2
- EPSS
- 1.10% 62.5% percentile
- CISA KEV
- Not listed
- Published
- 2022.01.27