CVE-2023-37602 | Alkacon OpenCMS 15.0 PNG File /workplace#!explorer unrestricted upload (Exploit 51564 / EUVD-2023-2064)
A vulnerability, which was classified as problematic, was found in Alkacon OpenCMS 15.0. Affected is an unknown function of the file /workplace#!explorer of the component PNG File Handler. The manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2023-37602. The attack can only be done within the local network. Furthermore, there is an exploit available.