Vulnerability CVE-2023-2056


Published: 2023-04-14

Description:
A vulnerability was found in DedeCMS up to 5.7.87 and classified as critical. This issue affects the function GetSystemFile of the file module_main.php. The manipulation leads to code injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-225941 was assigned to this vulnerability.

Type:

CWE-94

(Improper Control of Generation of Code ('Code Injection'))

 References:
https://vuldb.com/?id.225941
https://gitee.com/ashe-king/cve/blob/master/dedecms%20rce2.md
https://vuldb.com/?ctiid.225941

Copyright 2026, cxsecurity.com

 

Back to Top