Description
SiberianCMS - CWE-434: Unrestricted Upload of File with Dangerous Type - A malicious user with administrative privileges may be able to upload a dangerous filetype via an unspecified method
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
upgrade to version 4.20.44 or 5.0.4
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-43102 | SiberianCMS - CWE-434: Unrestricted Upload of File with Dangerous Type - A malicious user with administrative privileges may be able to upload a dangerous filetype via an unspecified method |
References
| Link | Providers |
|---|---|
| https://www.gov.il/en/Departments/faq/cve_advisories |
|
History
Tue, 24 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: INCD
Published:
Updated: 2024-09-24T13:22:03.046Z
Reserved: 2023-07-30T10:41:13.580Z
Link: CVE-2023-39377
Updated: 2024-08-02T18:10:20.211Z
Status : Modified
Published: 2023-09-27T15:18:56.087
Modified: 2024-11-21T08:15:16.653
Link: CVE-2023-39377
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD