High severity7.2NVD Advisory· Published Oct 27, 2023· Updated Jun 17, 2026
CVE-2023-46818
CVE-2023-46818
Description
An issue was discovered in ISPConfig before 3.2.11p1. PHP code injection can be achieved in the language file editor by an admin if admin_allow_langedit is enabled.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4Patches
Vulnerability mechanics
References
3- www.ispconfig.org/blog/ispconfig-3-2-11p1-released/nvdIssue TrackingPatchVendor Advisory
- packetstormsecurity.com/files/176126/ISPConfig-3.2.11-PHP-Code-Injection.htmlnvd
- seclists.org/fulldisclosure/2023/Dec/2nvd
News mentions
0No linked articles in our index yet.