Security Advisory
CVE-2016-7095
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Exponent CMS before 2.3.9 is vulnerable to an attacker uploading a malicious script file using redirection to place the script in an unprotected folder, one allowing script execution.