DedeCMS Command Execution Vulnerability in file_manage_control.php

Vulnerability

A command execution vulnerability has been identified in DedeCMS version 5.7.118, specifically within the file_manage_control.php file.

Impact

Exploitation of this vulnerability allows for arbitrary command execution on the server where DedeCMS is hosted.

Added: Jun 9, 2026, 8:27 PM
Updated: Jun 9, 2026, 8:27 PM

Vulnerability Rating

Custom Algorithm
spread
6.4
impact
10.0
exploitability
7.6
remediation
0.0
relevance
9.4
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.