Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-53933

Serendipity 2.4.0 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files with .phar extension. Attackers can upload files with system command payloads to the media upload endpoint and execute arbitrary commands on the server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 50.0%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-53933
  • S9y » Serendipity » Version: 2.4.0
    cpe:2.3:a:s9y:serendipity:2.4.0


Contact Us

Shodan ® - All rights reserved