Home

Description

Studio-42 eLfinder 2.1.62 is vulnerable to Remote Code Execution (RCE) as there is no restriction for uploading files with the .php8 extension.

PUBLISHED Reserved 2023-12-26 | Published 2024-10-31 | Updated 2024-11-01 | Assigner mitre

References

github.com/Studio-42/elFinder/issues/3615

cve.org (CVE-2023-52044)

nvd.nist.gov (CVE-2023-52044)

Download JSON