Remote Command Execution Vulnerability in Django-SSPanel by Ehco1996
CVE-2023-38941
9.8CRITICAL
What is CVE-2023-38941?
Django-SSPanel version 2022.2.2 has been identified to have a remote command execution vulnerability in the admin component. This flaw allows attackers to execute arbitrary commands on the server through the GoodsCreateView._post method, posing significant risks to data integrity and system security. Web administrators are advised to update their installations and review their configurations to mitigate potential exploitation.
