CyberRota Analysis
AI analysis pending.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
exploit
GitHub PoC Links
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2019-12309
Severity
MEDIUM
CVSS
4.9
EPSS
1.28%
Original NVD Description
dotCMS before 5.1.0 has a path traversal vulnerability exploitable by an administrator to create files. The vulnerability is caused by the insecure extraction of a ZIP archive.