First published: Thu Aug 03 2023(Updated: )
DedeCMS v5.7.109 has a File Upload vulnerability, leading to remote code execution (RCE).
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dedecms Dedecms | =5.7.109 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36298 is a vulnerability in DedeCMS v5.7.109 that allows remote code execution (RCE) via a file upload vulnerability.
CVE-2023-36298 is rated as high severity with a CVSS score of 8.8.
DedeCMS v5.7.109 is affected by CVE-2023-36298.
To fix CVE-2023-36298, it is recommended to update DedeCMS to a version that addresses the file upload vulnerability.
Yes, you can find more details about CVE-2023-36298 in the reference provided at https://github.com/MentalityXt/Dedecms-v5.7.109-RCE.