CVE-2023-51350: Critical severity UJCMS UJCMS vulnerability
Published Jan 11, 2024
·Updated
A spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted script to the X-Forwarded-For function in the header.
Affected Software
1 affected component
UJCMS UJCMS=8.0.2
Event History
Jan 11, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-51350?
CVE-2023-51350 is considered a high severity vulnerability due to its potential for spoofing attacks and arbitrary code execution.
2
How do I fix CVE-2023-51350?
To fix CVE-2023-51350, upgrade to a patched version of Ujcms that addresses this vulnerability.
3
What are the potential impacts of CVE-2023-51350?
The impacts of CVE-2023-51350 include unauthorized access to sensitive information and the ability to execute arbitrary code on affected systems.
4
Who is affected by CVE-2023-51350?
CVE-2023-51350 affects users of Ujcms version 8.0.2.
5
How can attackers exploit CVE-2023-51350?
Attackers can exploit CVE-2023-51350 by sending a crafted script to the X-Forwarded-For function in the header.