← back
CVE-2023-5762

Filr – Secure document library < 1.2.3.6 - Author+ RCE via file upload with phar ext

EPSS 2.0%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 2.0%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
04 Dec 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The Filr WordPress plugin before 1.2.3.6 is vulnerable from an RCE (Remote Code Execution) vulnerability, which allows the operating system to execute commands and fully compromise the server on behalf of a user with Author-level privileges.
Affected products
Unknown · Filr

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →