CVE-2023-46468: High severity juzaweb juzaweb CMS vulnerability
Published Oct 28, 2023
·Updated
An issue in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via a crafted file to the custom plugin function.
Affected Software
1 affected component
juzaweb juzaweb CMS<=3.4
Event History
Oct 28, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue in juzawebCMS?
The vulnerability ID for this issue in juzawebCMS is CVE-2023-46468.
2
What is the severity level of CVE-2023-46468?
The severity level of CVE-2023-46468 is high with a score of 7.8.
3
How does this vulnerability allow for the execution of arbitrary code?
This vulnerability allows a remote attacker to execute arbitrary code by sending a crafted file to the custom plugin function.
4
Which version of juzawebCMS is affected by CVE-2023-46468?
The version affected by CVE-2023-46468 is juzawebCMS v.3.4 and before.
5
Is there a fix for CVE-2023-46468?
There may be patches or updates available for juzawebCMS to fix CVE-2023-46468. It is recommended to check with the vendor for the latest information.