References https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/cms/PbootCMS-V3.1.2-%E6%AD%A3%E5%88%99%E7%BB%95%E8%BF%87-RCE-%E6%BC%8F%E6%B4%9E.md https://susec.me/2021/11/22/pboot-cms-V3-1-2-%E8%99%9A%E5%81%87%E7%9A%84%E6%97%A0%E6%96%87%E4%BB%B6%E8%90%BD%E5%9C%B0RCE/ https://nvd.nist.gov/vuln/detail/CVE-2022-32417 https://wiki.96.mk/Web%E5%AE%89%E5%85%A8/PbootCMS/PbootCMS%20v3.0.1%20%E8%BF%9C%E7%A8%8B%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E/ https://mvip.tophant.com/detail/1547797933173293058 https://www.anquanke.com/post/id/212603 https://github.com/myh0st/scripts/blob/master/poc-yaml-pbootcms-rce-cve-2022-32417.py https://app.opencve.io/cve/CVE-2022-32417
Related VulnerabilitiesJoomShaper SP LMS /index.php?option=com_splms&view=cart 文件上传漏洞(CVE-2026-48909)NukeViet /index.php 服务器端请求伪造漏洞(CVE-2026-55372)ZLMediaKit /index/ 未授权访问漏洞(CVE-2024-27488)WordPress Time Capsule /wp-tcapsule-bridge/upload/php/index.php 文件上传漏洞(CVE-2024-8856)OpenCATS /index.php 默认口令漏洞Joomla JCE /index.php com_jce 文件上传漏洞(CVE-2026-48907)TPshop /index.php 默认口令漏洞WIFISKY 7层流控路由器 /portal/ibilling/index.php 命令执行漏洞XYHCMS /index.php?s=Api/lt/gbooklist SQL 注入漏洞PoC多客圈子论坛系统 /api/index/quanManageList/getManageinfo SQL 注入漏洞DSMall /index.php 代码执行漏洞MagnusBilling /mbilling/index.php/authentication/login 默认口令漏洞Dolibarr /index.php 默认口令漏洞