CVE-2023-1877: Command Injection in microweber/microweber
Published Apr 5, 2023
·Updated
Command Injection in GitHub repository microweber/microweber prior to 1.3.3.
Affected Software
1 affected component
Microweber Microweber<1.3.3
Remediation
Event History
Apr 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-1877?
CVE-2023-1877 is a command injection vulnerability found in the GitHub repository microweber/microweber prior to version 1.3.3.
2
How severe is CVE-2023-1877?
CVE-2023-1877 has a severity rating of critical with a CVSS score of 9.8.
3
What software is affected by CVE-2023-1877?
The Microweber Microweber software prior to version 1.3.3 is affected by CVE-2023-1877.
4
How can I fix the CVE-2023-1877 vulnerability?
To fix the CVE-2023-1877 vulnerability, update the microweber/microweber repository to version 1.3.3 or later.
5
Where can I find more information about CVE-2023-1877?
You can find more information about CVE-2023-1877 on the GitHub commit [link](https://github.com/microweber/microweber/commit/93a906d0bf096c3ab1674012a90c88d101e76c8d) and on the Huntr.dev bounty [link](https://huntr.dev/bounties/71fe4b3b-20ac-448c-8191-7b99d7ffaf55).