There is a PHP file inclusion vulnerability in the template configuration of eyoucms v1.6.4, allowing attackers to execute code or system commands through a carefully crafted malicious payload.
References
Configurations
History
No history.
Information
Published : 2024-03-14 22:15
Updated : 2025-04-16 15:29
NVD link : CVE-2023-42286
Mitre link : CVE-2023-42286
CVE.ORG link : CVE-2023-42286
JSON object : View
Products Affected
eyoucms
- eyoucms
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
