Blacklist bypass issue exists in WUZHI CMS up to and including 4.1.0 in common.func.php, which when uploaded can cause remote code executiong.
No PoCs from references.
- https://github.com/p1ay8y3ar/cve_monitor