Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-5966

An authenticated privileged attacker could upload a specially crafted zip to the EspoCRM server in version 7.2.5, via the extension deployment form, which could lead to arbitrary PHP code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.5%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2023-5966


Contact Us

Shodan ® - All rights reserved