CVE-2023-53892 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Blackcat CMS 1.4 contains a remote code execution vulnerability that allows authenticated administrators to upload malicious PHP files through the jquery plugin…
High CVSS: 8.6

CVE-2023-53892

Blackcat CMS 1.4 contains a remote code execution vulnerability that allows authenticated administrators to upload malicious PHP files through the jquery plugin manager. Attackers can upload a zip file with a PHP shell script and execute arbitrary system commands by accessing the uploaded plugin's PHP file with a 'code' parameter.
Vendor
Blackcat-cms
Product
Blackcat Cms
CWE
CWE-434
Yayın Tarihi
2025-12-15 21:15:52
Güncelleme
2025-12-17 15:37:00
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar