Vulnerability Details CVE-2023-45554
File Upload vulnerability in zzzCMS v.2.1.9 allows a remote attacker to execute arbitrary code via modification of the imageext parameter from jpg, jpeg,gif, and png to jpg, jpeg,gif, png, pphphp.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.102
EPSS Ranking 92.7%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-45554
-
cpe:2.3:a:zzzcms:zzzcms:2.1.9