漏洞标题
[20250301] - Core - Malicious file uploads via Media Manager
漏洞描述信息
Inadequate checks in the Media Manager allowed users with "edit" privileges to change file extension to arbitrary extension, including .php and other potentially executable extensions.
CVSS信息
N/A
漏洞类别
危险类型文件的不加限制上传