xunruicms up to v4.5.1 was discovered to contain a remote code execution (RCE) vulnerability in /index.php. This vulnerability allows attackers to execute arbitrary code via a crafted GET request.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://github.com/P0wfuu/xunruicms-RCE |
|
History
Wed, 18 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2023-09-26T00:00:00.000Z
Updated: 2025-06-18T14:19:19.143Z
Reserved: 2021-08-09T00:00:00.000Z
Link: CVE-2021-38243
Updated: 2024-08-04T01:37:16.346Z
Status : Modified
Published: 2023-09-27T15:15:54.463
Modified: 2025-06-18T15:15:19.803
Link: CVE-2021-38243
No data.