SiberianCMS - CWE-434: Unrestricted Upload of File with Dangerous Type - A malicious user with administrative privileges may be able to upload a dangerous filetype via an unspecified method
CVE-2023-39377
7.2HIGH
What is CVE-2023-39377?
SiberianCMS has a vulnerability that allows users with administrative privileges to upload files of dangerous types without restrictions. This flaw potentially enables an attacker to exploit the system by uploading malicious files, posing significant risks to the integrity and security of the platform. Proper security measures should be taken to mitigate the risks associated with this vulnerability.
Affected Version(s)
SiberianCMS versions 4.*, 5.*
