Vulnerability Description
MvcTools 6d48cd6830fc1df1d8c9d61caa1805fd6a1b7737 was discovered to contain a code execution backdoor via the request package (requirements.txt). This vulnerability allows attackers to access sensitive user information and execute arbitrary code.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zetacomponents | Mvctools | 2008-09-23 |
Related Weaknesses (CWE)
References
- https://github.com/zetacomponents/MvcTools/Product
- https://github.com/zetacomponents/MvcTools/issues/12Exploit
- https://mirrors.neusoft.edu.cn/pypi/web/simple/request/Broken Link
- https://github.com/zetacomponents/MvcTools/Product
- https://github.com/zetacomponents/MvcTools/issues/12Exploit
- https://mirrors.neusoft.edu.cn/pypi/web/simple/request/Broken Link
FAQ
What is CVE-2023-24108?
CVE-2023-24108 is a vulnerability with a CVSS score of 9.8 (CRITICAL). MvcTools 6d48cd6830fc1df1d8c9d61caa1805fd6a1b7737 was discovered to contain a code execution backdoor via the request package (requirements.txt). This vulnerability allows attackers to access sensitiv...
How severe is CVE-2023-24108?
CVE-2023-24108 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-24108?
Check the references section above for vendor advisories and patch information. Affected products include: Zetacomponents Mvctools.