Pular para o conteúdo
Ver todas as ameaças

CVE-2023-2928

Alvo: Não informado

Descrição

A vulnerability was found in DedeCMS up to 5.7.106. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file uploads/dede/article_allowurl_edit.php. The manipulation of the argument allurls leads to code injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-230083.

Software
Não informado
Tipo Software
Core
CVE
CVE-2023-2928
Tags
Nâo informado
Data de publicação
27/05/2023
Última atualização
03/06/2023
Pontuação em CVSS 3.0
8.8
Alto
plugins premium WordPress