OS Command injection vulnerability in PublicCMS PublicCMS-V5.202506.a, and PublicCMS-V5.202506.b allowing attackers to execute arbitrary commands via crafted DATABASE, USERNAME, or PASSWORD variables to the backupDB.bat file.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "5.202506.a"
},
{
"introduced": "0"
},
{
"last_affected": "5.202506.b"
}
]
}