Vulnerabilities
4 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2023-53883 +1 in the same advisory: …53884 | Webedition CMS v2.9.8.8 contains a remote code execution vulnerability that allows authenticated attackers to inject system commands through PHP page creation. Webedition CMS v2.9.8.8 contains a remote code execution vulnerability that allows authenticated attackers to inject system commands through PHP page creation. Attackers can create a new PHP page with malicious system commands in the description field to execute arbitrary commands on the server. NVD description · AI analysis pending | 8.6 group max | 1% | PoC |
| — | |
| CVE-2024-28418 +1 in the same advisory: …28417 | Webedition CMS 9.2.2.0 has a File upload vulnerability via /webEdition/we_cmd.php Webedition CMS 9.2.2.0 has a File upload vulnerability via /webEdition/we_cmd.php NVD description · AI analysis pending | 6.5 group max | <1% | PoC |
| — |