CVE-2023-36298: Malicious File Upload
Published Aug 3, 2023
·Updated
DedeCMS v5.7.109 has a File Upload vulnerability, leading to remote code execution (RCE).
Affected Software
1 affected component
DedeCMS Dedecms=5.7.109
Event History
Aug 3, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
03:15 PM
Description
Frequently Asked Questions
1
What is CVE-2023-36298?
CVE-2023-36298 is a vulnerability in DedeCMS v5.7.109 that allows remote code execution (RCE) via a file upload vulnerability.
2
How severe is CVE-2023-36298?
CVE-2023-36298 is rated as high severity with a CVSS score of 8.8.
3
What software is affected by CVE-2023-36298?
DedeCMS v5.7.109 is affected by CVE-2023-36298.
4
How can I fix CVE-2023-36298?
To fix CVE-2023-36298, it is recommended to update DedeCMS to a version that addresses the file upload vulnerability.
5
Is there any reference for CVE-2023-36298?
Yes, you can find more details about CVE-2023-36298 in the reference provided at https://github.com/MentalityXt/Dedecms-v5.7.109-RCE.