Vulnerability Details CVE-2023-41564
An arbitrary file upload vulnerability in the Upload Asset function of Cockpit CMS v2.6.3 allows attackers to execute arbitrary code via uploading a crafted .shtml file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.201
EPSS Ranking 95.2%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2023-41564
-
cpe:2.3:a:agentejo:cockpit:2.6.3