Vulnerabilities > Shift Tech

DATE CVE VULNERABILITY TITLE RISK
2022-12-07 CVE-2022-42458 Improper Authentication vulnerability in Shift-Tech Bingo!Cms
Authentication bypass using an alternate path or channel vulnerability in bingo!CMS version1.7.4.1 and earlier allows a remote unauthenticated attacker to upload an arbitrary file.
network
low complexity
shift-tech CWE-287
critical
9.8