{
"id": "CVE-2023-42398",
"sourceIdentifier": "cve@mitre.org",
"published": "2023-09-15T17:15:14.577",
"lastModified": "2023-09-17T12:01:22.937",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
"lang": "en",
"value": "An issue in zzCMS v.2023 allows a remote attacker to execute arbitrary code and obtain sensitive information via the ueditor component in controller.php."
}
],
"metrics": {},
"references": [
"url": "https://github.com/laterfuture/php-audit/blob/main/CVE-2023-42398%E2%80%94%E2%80%94ZZCMS2023%20SSRF",
"source": "cve@mitre.org"
]