Remote Code Execution vulnerability in DedeCMS through 5.7.109 allows remote attackers to run arbitrary code via crafted POST request to /dede/tpl.php.
References
Link | Resource |
---|---|
http://dedecms.com | Product |
https://www.dedecms.com/ | Product |
http://dedecms.com | Product |
https://www.dedecms.com/ | Product |
Configurations
History
No history.
Information
Published : 2023-07-31 14:15
Updated : 2024-11-21 08:07
NVD link : CVE-2023-34842
Mitre link : CVE-2023-34842
CVE.ORG link : CVE-2023-34842
JSON object : View
Products Affected
dedecms
- dedecms
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')