CVE-2024-42991: Mingsoft Mcms

High severity, CVSS 8.1. EPSS: 0.8% chance of exploitation in the next 30 days.

MCMS v5.4.1 has front-end file upload vulnerability which can lead to remote command execution.

Affected products

Published 2024-09-03. Last modified 2026-06-17.