WEBIGniter 28.7.23 Unrestricted File Upload Remote Code Execution
Vulnerability Description
WEBIGniter 28.7.23 contains a file upload vulnerability that allows authenticated attackers to upload and execute dangerous PHP files through the media function. Attackers can leverage any created account to upload malicious PHP scripts that enable remote code execution on the application server.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-53869
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- nu11secur1ty
Affected Vendor
WebIGniter
View all reports →