PT-2023-23508 · Guppy Cms · Guppy Cms

Blue0X1

·

Published

2023-05-17

·

Updated

2023-05-25

·

CVE-2023-31903

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GuppY CMS version 6.00.10
Description The issue allows remote attackers to execute arbitrary code by uploading a php file, due to an Unrestricted File Upload.
Recommendations For GuppY CMS version 6.00.10, update to a version that fixes the Unrestricted File Upload issue to prevent remote attackers from executing arbitrary code.

Exploit

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-31903

Affected Products

Guppy Cms