CVE-2022-44087
Critical · CVSS 9.8ESPCMS — Remote Code Execution (RCE) via file upload / code injection
- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- No
- Class
- other
- NVD-CWE-noinfo, CWE-94
Description
ESPCMS P8.21120101 was discovered to contain a remote code execution (RCE) vulnerability in the component UPFILE_PIC_ZOOM_HIGHT.
Search profile — drives PoC discovery
Symbols UPFILE_PIC_ZOOM_HIGHTESPCMS P8.21120101earclink/espcmsI5WSA0
Keywords CVE-2022-44087ESPCMS P8.21120101UPFILE_PIC_ZOOM_HIGHTESPCMS RCEESPCMS remote code executionearclink espcmsESPCMS P8 exploitESPCMS file upload RCE
Versions: P8.21120101
References
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T12:30:39.000Z