CVE-2023-4591

CVSS V2 None CVSS V3 None
Description
A local file inclusion vulnerability has been found in WPN-XM Serverstack affecting version 0.8.6, which would allow an unauthenticated user to perform a local file inclusion (LFI) via the /tools/webinterface/index.php?page parameter by sending a GET request. This vulnerability could lead to the loading of a PHP file on the server, leading to a critical webshell exploit.
Overview
  • CVE ID
  • CVE-2023-4591
  • Assigner
  • INCIBE
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-11-03T11:01:55.931Z
  • Last Modified Date
  • 2023-11-03T11:01:55.931Z
History
Created Old Value New Value Data Type Notes
2024-06-24 19:49:58 Added to TrackCVE