Security Advisory

CVE-2023-45554

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-24 00:00:00
Last updated 2024-09-11 18:23:14
Assigner mitre
State PUBLISHED

Description

File Upload vulnerability in zzzCMS v.2.1.9 allows a remote attacker to execute arbitrary code via modification of the imageext parameter from jpg, jpeg,gif, and png to jpg, jpeg,gif, png, pphphp.