First published: Thu Dec 28 2023(Updated: )
ZZCMS 2023 has a file upload vulnerability in 3/E_bak5.1/upload/index.php, allowing attackers to exploit this loophole to gain server privileges and execute arbitrary code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ZZCMS | =2023 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50104 is considered a critical severity vulnerability due to its potential for arbitrary code execution on the server.
To fix CVE-2023-50104, ensure that you restrict file uploads to only trusted file types and implement proper validation and sanitization.
CVE-2023-50104 affects the file upload functionality in the ZZCMS 2023 version.
Yes, CVE-2023-50104 can be exploited remotely by attackers to gain server privileges.
CVE-2023-50104 can lead to severe security compromises, allowing attackers to execute arbitrary code if exploited.