PromptRiskDBThreat intelligence atlas

CVE-2022-26352 - dotCMS dotCMS

AI Vulnerability Context

An issue was discovered in the ContentResource API in dotCMS 3.0 through 22.02. Attackers can craft a multipart form request to post a file whose filename is not initially sanitized. This allows directory traversal, in which the file is saved outside of the intended storage location. If anonymous content creation is enabled, this allows an unauthenticated attacker to upload an executable file, such as a .jsp file...

Overview

A source-backed snapshot of this vulnerability.

An issue was discovered in the ContentResource API in dotCMS 3.0 through 22.02. Attackers can craft a multipart form request to post a file whose filename is not initially sanitized. This allows directory traversal, in which the file is saved outside of the intended storage location. If anonymous content creation is enabled, this allows an unauthenticated attacker to upload an executable file, such as a .jsp file, that can lead to remote code execution.

CISA KEVyesWhether CISA lists this as exploited.
Techniques0AI attack methods connected to this vulnerability.
Case studies0Examples where this vulnerability is mentioned.

Vulnerability status

How serious this vulnerability is and whether it is known to be exploited.

CISA KEVCRITICAL
CVE ID
CVE-2022-26352
Vendor/project
dotCMS
Product
dotCMS
Vulnerability name
dotCMS Unrestricted Upload of File Vulnerability
Date added
2022-08-25
Due date
2022-09-15
Known ransomware campaign use
Known
CVSS v3
9.8
CWE-138CWE-22

Exploit context

What the vulnerability is about.

An issue was discovered in the ContentResource API in dotCMS 3.0 through 22.02. Attackers can craft a multipart form request to post a file whose filename is not initially sanitized. This allows directory traversal, in which the file is saved outside of the intended storage location. If anonymous content creation is enabled, this allows an unauthenticated attacker to upload an executable file, such as a .jsp file, that can lead to remote code execution.

Source evidence

Original public records and references for this page.

Original source

Original source links

Open the public records and source datasets used for this page.