CVE-2022-4136
- Reference to the description:
- Description:
- Dangerous method exposed which can lead to RCE in qmpass/leadshop v1.4.15 allows an attacker to control the target host by calling any function in leadshop.php via the GET method.
- Last updated date:
- 11/30/2022
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 11/30/2022
- Reference url to background
https://huntr.dev/bounties/fe418ae1-7c80-4d91-8a5a-923d60ba78c3