PluXml Blog v5.8.9 was discovered to contain a remote code execution (RCE) vulnerability in the Static Pages feature. This vulnerability is exploited via injecting a crafted payload into the Content field.
{ "binaries": [ { "binary_name": "pluxml", "binary_version": "5.4-1ubuntu1" } ], "priority_reason": "Allows remote code execution." }
{ "binaries": [ { "binary_name": "pluxml", "binary_version": "5.5-2" } ], "priority_reason": "Allows remote code execution." }
{ "binaries": [ { "binary_name": "pluxml", "binary_version": "5.6-1" } ], "priority_reason": "Allows remote code execution." }