ZeroHour

CVE-2023-36994

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p57
Published
()
Modified
Description

In TravianZ 8.3.4 and 8.3.3, Incorrect Access Control in the installation script allows an attacker to overwrite the server configuration and inject PHP code.

Vendors
travianz project
Products
travianz
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.