CVE-2023-37677: Malicious File Upload
Published Jul 25, 2023
·Updated
Pligg CMS v2.0.2 (also known as Kliqqi) was discovered to contain a remote code execution (RCE) vulnerability in the component admineditor.php.
Affected Software
1 affected component
Pligg Pligg CMS=2.0.2
Event History
Jul 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-37677?
CVE-2023-37677 is a remote code execution (RCE) vulnerability in Pligg CMS v2.0.2 (also known as Kliqqi) in the component admin_editor.php.
2
Is Pligg CMS v2.0.2 affected by CVE-2023-37677?
Yes, Pligg CMS v2.0.2 is affected by CVE-2023-37677.
3
How severe is CVE-2023-37677?
CVE-2023-37677 has a severity rating of 9.8, which is classified as critical.
4
How can I fix the CVE-2023-37677 vulnerability?
To fix the CVE-2023-37677 vulnerability, update Pligg CMS to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2023-37677?
More information about CVE-2023-37677 can be found at the following link: [https://github.com/Kliqqi-CMS/Kliqqi-CMS/issues/264].