EXPOSURES › CVE-2023-43234
CVE-2023-43234
CRITICAL
DETAIL
SourceNVD · cve
Published2023-09-27
CVSS9.8
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-43234 ↗
⚡ RCE
SHAME 50/100
rce
DedeBIZ v6.2.11 was discovered to contain multiple remote code execution (RCE) vulnerabilities at /admin/file_manage_control.php via the $activepath and $filename parameters.
▸ RECOMMENDED ACTION Remote code execution — patch the affected products on priority.
PLAYERS IMPLICATED
DESCRIPTION
DedeBIZ v6.2.11 was discovered to contain multiple remote code execution (RCE) vulnerabilities at /admin/file_manage_control.php via the $activepath and $filename parameters.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.