First published: Mon Oct 02 2023(Updated: )
An issue in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via a crafted script to the layout.master skin file at the Skin management component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MojoPortal | =2.7.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-44011 is an issue in mojoPortal v.2.7.0.0 that allows a remote attacker to execute arbitrary code via a crafted script to the layout.master skin file.
CVE-2023-44011 affects mojoPortal v.2.7.0.0.
CVE-2023-44011 has a severity rating of 9.8 (critical).
CVE-2023-44011 can be exploited by a remote attacker who sends a crafted script to the layout.master skin file.
A fix for CVE-2023-44011 may be available. Please refer to the official vendor's security advisory for more information and apply any necessary patches or updates.