High severity8.8NVD Advisory· Published Dec 14, 2023· Updated Jun 17, 2026
CVE-2023-50564
CVE-2023-50564
Description
An arbitrary file upload vulnerability in the component /inc/modules_install.php of Pluck-CMS v4.7.18 allows attackers to execute arbitrary code via uploading a crafted ZIP file.
Affected products
4- Range: =4.7.18
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.