VendorsOpen Source BMSopen_source_background_management_system1.1.1
Vulnerabilities

Open Source BMS Open Source Background Management System (BMS) 1.1.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2019-9082
ThinkPHP before 3.2.4, as used in Open Source BMS v1.1.1 and other products, allows Remote Command Execution via public//?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]= followed by the command.
Published 2019-02-24 · Analyzed
9.3KEV2 PoCEPSS 0.974