The Jumbo Website Manager version 1.3.7 is vulnerable to Remote Code Execution (RCE) due to improper handling of file uploads, allowing an attacker to upload a malicious PHP file and execute arbitrary code on the server.
| Vendor | Product | Versions |
|---|---|---|
| jumbo | jumbo website | v1.3.7 |