CVE-2023-35813: Code Injection
Multiple Sitecore products allow remote code execution. This affects Experience Manager, Experience Platform, and Experience Commerce through 10.3.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-35813?
CVE-2023-35813 is a vulnerability that allows remote code execution in multiple Sitecore products, including Experience Manager, Experience Platform, and Experience Commerce.
Which Sitecore products are affected by CVE-2023-35813?
Multiple Sitecore products are affected by CVE-2023-35813, including Experience Manager, Experience Platform, and Experience Commerce.
What is the severity of CVE-2023-35813?
CVE-2023-35813 has a severity rating of 9.8 out of 10, making it critical.
How can I fix CVE-2023-35813?
To fix CVE-2023-35813, you should apply the necessary security patches provided by Sitecore. It is also recommended to follow any additional mitigation steps mentioned in their security advisory.
Where can I find more information about CVE-2023-35813?
You can find more information about CVE-2023-35813 in Sitecore's knowledge base article: [Sitecore Knowledge Base](https://support.sitecore.com/kb?id=kb_article_view&sysparm_article=KB1002979).