VYPR
High severity7.2NVD Advisory· Published Sep 27, 2023· Updated Jun 17, 2026

CVE-2023-39377

CVE-2023-39377

Description

SiberianCMS - CWE-434: Unrestricted Upload of File with Dangerous Type - A malicious user with administrative privileges may be able to upload a dangerous filetype via an unspecified method

Affected products

3
  • cpe:2.3:a:siberiancms:siberiancms:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:siberiancms:siberiancms:*:*:*:*:*:*:*:*range: >=4.0.0,<4.20.44
    • (no CPE)range: versions 4.*, 5.*
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.