Critical severity9.8NVD Advisory· Published Dec 17, 2025· Updated Jun 17, 2026
CVE-2023-53921
CVE-2023-53921
Description
SitemagicCMS 4.4.3 contains a remote code execution vulnerability that allows attackers to upload malicious PHP files to the files/images directory. Attackers can upload a .phar file with system command execution payload to compromise the web application and execute arbitrary system commands.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <4.4.3
cpe:2.3:a:sitemagic:sitemagic_cms:4.4.3:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sitemagic:sitemagic_cms:4.4.3:*:*:*:*:*:*:*
- (no CPE)range: 4.4.3
Patches
Vulnerability mechanics
References
3- www.exploit-db.com/exploits/51464nvdExploitThird Party Advisory
- www.vulncheck.com/advisories/sitemagiccms-remote-code-execution-via-unrestricted-file-uploadnvdThird Party Advisory
- sitemagic.org/Download.htmlnvdProduct
News mentions
0No linked articles in our index yet.