.. / CVE-2022-26352

Exploit for DotCMS - Arbitrary File Upload (CVE-2022-26352)

Description:

DotCMS management system contains an arbitrary file upload vulnerability via the /api/content/ path which can allow attackers to upload malicious Trojans to obtain server permissions.

Nuclei Template

View the template here CVE-2022-26352.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-26352.yaml
Copy

References:

https://nvd.nist.gov/vuln/detail/CVE-2022-26352
http://packetstormsecurity.com/files/167365/dotCMS-Shell-Upload.html
https://blog.assetnote.io/2022/05/03/hacking-a-bank-using-dotcms-rce/
https://groups.google.com/g/dotcms
https://github.com/h1ei1/POC/tree/main/CVE-2022-26352
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26352