Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-53923

UliCMS 2023.1 contains a privilege escalation vulnerability that allows unauthenticated attackers to create administrative accounts through the UserController endpoint. Attackers can send a crafted POST request to /dist/admin/index.php with specific parameters to generate a new admin user with full system access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.8%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-53923
  • Ulicms » Ulicms » Version: 2023.1
    cpe:2.3:a:ulicms:ulicms:2023.1


Contact Us

Shodan ® - All rights reserved