RULE(RULE ID:333629)

Rule General Information
Release Date: 2021-06-03
Rule Name: Shiziyu CMS wxapp.php Arbitrary File Upload Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Shiziyu CMS is a small program as the carrier of the website content management system, through the Lionfish CMS can quickly build community community social resources community group purchase platform. Shiziyu CMS wxapp.php has an arbitrary file upload vulnerability, which is caused by inadequate verification of uploaded files, allowing attackers to upload malicious files to the server of the application, and then execute malicious code, and finally obtain server permissions.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.