CVE-2023-42398
- Reference to the description:
- Description:
- An issue in zzCMS v.2023 allows a remote attacker to execute arbitrary code and obtain sensitive information via the ueditor component in controller.php.
- Last updated date:
- 09/20/2023
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 09/20/2023
- Reference url to background
https://github.com/laterfuture/php-audit/blob/main/CVE-2023-42398%E2%80%94%E2%80%94ZZCMS2023%20SSRF