CVE-2023-1681: Xunrui CMS test.php information disclosure
Published Mar 28, 2023
·Updated
A vulnerability, which was classified as problematic, was found in Xunrui CMS 4.61. Affected is an unknown function of the file /config/myfield/test.php. The manipulation leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-224238 is the identifier assigned to this vulnerability.
Affected Software
1 affected component
XunRuiCMS XunRuiCMS=4.6.1
Event History
Mar 28, 2023
CVE Published
11:00 PM
Data Sourced
11:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for the Xunrui CMS information disclosure vulnerability?
The vulnerability ID for the Xunrui CMS information disclosure vulnerability is CVE-2023-1681.
2
What is the severity of CVE-2023-1681?
The severity of CVE-2023-1681 is high, with a severity value of 7.5.
3
What is the affected software of CVE-2023-1681?
The affected software of CVE-2023-1681 is Xunrui CMS 4.61.
4
What is the CWE number associated with CVE-2023-1681?
The CWE number associated with CVE-2023-1681 is CWE-200.
5
How can the Xunrui CMS information disclosure vulnerability be exploited?
The Xunrui CMS information disclosure vulnerability can be exploited remotely.