CVE-2023-1484
Published on: Not Yet Published
Last Modified on: 03/18/2023 10:15:00 AM UTC
Certain versions of Cms from Xzjie contain the following vulnerability:
A vulnerability was found in xzjie cms up to 1.0.3 and classified as critical. This issue affects some unknown processing of the file /api/upload. The manipulation of the argument uploadFile leads to unrestricted upload. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-223367.
- CVE-2023-1484 has been assigned by
[email protected] to track the vulnerability
- Affected Vendor/Software:
xzjie - cms version = 1.0.0
- Affected Vendor/Software:
xzjie - cms version = 1.0.1
- Affected Vendor/Software:
xzjie - cms version = 1.0.2
- Affected Vendor/Software:
xzjie - cms version = 1.0.3
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Login required | vuldb.com text/html Inactive LinkNot Archived |
![]() |
Vulnerability: found a upload vuln · Issue #I6INIT · xzjie/cms - Gitee.com | gitee.com text/html |
![]() |
Login required | vuldb.com text/html Inactive LinkNot Archived |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Software
Vendor | Product | Version |
---|---|---|
Xzjie | cms | = 1.0.0 |
Xzjie | cms | = 1.0.1 |
Xzjie | cms | = 1.0.2 |
Xzjie | cms | = 1.0.3 |
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2023-1484 | 2023-03-18 10:38:33 |