CVE-2023-46042: Code Injection
An issue in GetSimpleCMS v.3.4.0a allows a remote attacker to execute arbitrary code via a crafted payload to the phpinfo().
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-46042?
CVE-2023-46042 is a vulnerability in GetSimpleCMS v.3.4.0a that allows a remote attacker to execute arbitrary code via a crafted payload to the phpinfo().
How severe is CVE-2023-46042?
CVE-2023-46042 has a severity rating of 9.8, which is considered critical.
How can I exploit the vulnerability in CVE-2023-46042?
As a cybersecurity analyst, I cannot provide instructions on exploiting vulnerabilities. It is recommended to follow responsible disclosure practices and report the vulnerability to the software vendor.
How can I fix CVE-2023-46042?
A fix for CVE-2023-46042 is not available at the moment. It is recommended to stay updated with the latest security advisories from GetSimpleCMS and apply patches or updates as soon as they are released.
Where can I find more information about CVE-2023-46042?
You can find more information about CVE-2023-46042 in the GitHub page provided as a reference: https://github.com/Num-Nine/CVE/wiki/A-file-write-vulnerability-exists-in-GetSimpleCMS