9.8
CVSSv3

CVE-2023-34880

Published: 15/06/2023 Updated: 26/06/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

cmseasy v7.7.7.7 20230520 exists to contain a path traversal vulnerability via the add_action method at lib/admin/language_admin.php. This vulnerability allows malicious users to execute arbitrary code and perform a local file inclusion.

Vulnerable Product Search on Vulmon Subscribe to Product

cmseasy cmseasy 7.7.7.7