CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2022-44087

Critical · CVSS 9.8

ESPCMS — Remote Code Execution (RCE) via file upload / code injection

CVSS
9.8
nvd
EPSS
KEV
No
Class
other
NVD-CWE-noinfo, CWE-94

Description

ESPCMS P8.21120101 was discovered to contain a remote code execution (RCE) vulnerability in the component UPFILE_PIC_ZOOM_HIGHT.

Search profile — drives PoC discovery

Symbols UPFILE_PIC_ZOOM_HIGHTESPCMS P8.21120101earclink/espcmsI5WSA0
Keywords CVE-2022-44087ESPCMS P8.21120101UPFILE_PIC_ZOOM_HIGHTESPCMS RCEESPCMS remote code executionearclink espcmsESPCMS P8 exploitESPCMS file upload RCE
Versions: P8.21120101

References

Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T12:30:39.000Z