Security Advisory

CVE-2023-54352

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-08 01:55:29
Last updated 2026-06-08 16:32:49
Assigner VulnCheck
CVSS score not scored
State PUBLISHED

Description

WordPress Seotheme contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary PHP code by uploading malicious files to the theme directory. Attackers can access the uploaded PHP shell at /wp-content/themes/seotheme/mar.php to execute system commands and upload additional files for persistent access.