Vulnerability CVE-2023-3056


Published: 2023-06-02

Description:
A vulnerability was found in YFCMF up to 3.0.4. It has been declared as problematic. This vulnerability affects unknown code of the file index.php. The manipulation leads to path traversal: '../filedir'. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-230542 is the identifier assigned to this vulnerability.

Type:

CWE-24

(Path Traversal: '../filedir')

 References:
https://github.com/HuBenLab/HuBenVulList/blob/main/YFCMF-TP6-3.0.4%20has%20a%20Remote%20Command%20Execution%20(RCE)%20vulnerability%201.md
https://vuldb.com/?ctiid.230542
https://vuldb.com/?id.230542

Copyright 2026, cxsecurity.com

 

Back to Top