CVE-2023-23151: Medium severity bloofox vulnerability
Published Jan 25, 2023
·Updated
bloofoxCMS v0.5.2.1 was discovered to contain an arbitrary file deletion vulnerability via the component /include/inccontentmedia.php.
Affected Software
1 affected component
bloofox bloofoxCMS=0.5.2.1
Event History
Jan 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-23151.
2
What is the severity level of CVE-2023-23151?
The severity level of CVE-2023-23151 is medium, with a severity value of 6.5.
3
How does CVE-2023-23151 affect bloofoxCMS?
CVE-2023-23151 affects bloofoxCMS version 0.5.2.1.
4
What is the impact of CVE-2023-23151?
CVE-2023-23151 allows an attacker to delete arbitrary files via the component /include/inc_content_media.php in bloofoxCMS.
5
Is there a fix available for CVE-2023-23151?
At this time, there is no available fix for CVE-2023-23151. It is recommended to update to a newer version of bloofoxCMS if one becomes available.