Critical severity9.8NVD Advisory· Published Apr 4, 2023· Updated Jun 17, 2026
CVE-2023-1728
CVE-2023-1728
Description
Unrestricted Upload of File with Dangerous Type vulnerability in Fernus Informatics LMS allows OS Command Injection, Server Side Include (SSI) Injection.
This issue affects LMS: before 23.04.03.
Affected products
3- cpe:2.3:a:fernus:learning_management_systems:*:*:*:*:*:*:*:*Range: <23.04.03
<23.04.03+ 1 more
- (no CPE)range: <23.04.03
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
2- www.usom.gov.tr/bildirim/tr-23-0194nvdThird Party AdvisoryUS Government Resource
- siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-23-0194nvd
News mentions
0No linked articles in our index yet.