First published: Tue Oct 24 2023(Updated: )
File Upload vulnerability in zzzCMS v.2.1.9 allows a remote attacker to execute arbitrary code via a crafted file to the down_url function in zzz.php file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zzzcms Zzzcms | =2.1.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-45555 is a file upload vulnerability in zzzCMS v.2.1.9 that allows a remote attacker to execute arbitrary code.
The vulnerability in zzzCMS v.2.1.9 occurs due to a file upload vulnerability in the down_url function in the zzz.php file.
CVE-2023-45555 has a severity rating of high (7.8).
A remote attacker can exploit CVE-2023-45555 by uploading a crafted file to the down_url function in the zzz.php file.
It is recommended to update to a patched version of zzzCMS that addresses the file upload vulnerability.