First published: Sat Jun 17 2023(Updated: )
Multiple Sitecore products allow remote code execution. This affects Experience Manager, Experience Platform, and Experience Commerce through 10.3.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sitecore | >=8.2<=10.3 | |
Sitecore CMS and Experience Platform (XP) | >=8.2<=10.3 | |
Sitecore | >=8.2<=10.3 | |
Sitecore | >=8.2<=10.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-35813 is a vulnerability that allows remote code execution in multiple Sitecore products, including Experience Manager, Experience Platform, and Experience Commerce.
Multiple Sitecore products are affected by CVE-2023-35813, including Experience Manager, Experience Platform, and Experience Commerce.
CVE-2023-35813 has a severity rating of 9.8 out of 10, making it critical.
To fix CVE-2023-35813, you should apply the necessary security patches provided by Sitecore. It is also recommended to follow any additional mitigation steps mentioned in their security advisory.
You can find more information about CVE-2023-35813 in Sitecore's knowledge base article: [Sitecore Knowledge Base](https://support.sitecore.com/kb?id=kb_article_view&sysparm_article=KB1002979).