Medium severity6.3NVD Advisory· Published Apr 29, 2023· Updated Jun 17, 2026
CVE-2023-2424
CVE-2023-2424
Description
A vulnerability was found in DedeCMS 5.7.106 and classified as critical. Affected by this issue is the function UpDateMemberModCache of the file uploads/dede/config.php. The manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-227750 is the identifier assigned to this vulnerability.
Affected products
3Patches
Vulnerability mechanics
References
3- gitee.com/xieqiangweb/cve/blob/master/dede/dedecms%20rce.mdnvdExploitThird Party Advisory
- vuldb.comnvdThird Party Advisory
- vuldb.comnvdThird Party Advisory
News mentions
0No linked articles in our index yet.