Description
A local file inclusion (LFI) in Customer Support System v1 allows attackers to include internal PHP files and gain unauthorized acces via manipulation of the page= parameter at /customer_support/index.php.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 28 Mar 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oretnom23
Oretnom23 customer Support System |
|
| CPEs | cpe:2.3:a:oretnom23:customer_support_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Oretnom23
Oretnom23 customer Support System |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T22:01:24.429Z
Reserved: 2023-11-27T00:00:00.000Z
Link: CVE-2023-49544
Updated: 2024-08-02T22:01:24.429Z
Status : Analyzed
Published: 2024-03-01T22:15:47.683
Modified: 2025-03-28T14:26:54.410
Link: CVE-2023-49544
No data.
OpenCVE Enrichment
No data.
Weaknesses