Description
An issue was discovered in SEMCMS v.4.8, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via the upload.php file.
References
github.com/ss122-0ss/semcmsv4.8/blob/main/readme.md
github.com/ss122-0ss/semcmsv4.8/blob/main/readme.md