CVE-2023-0315
HIGHfroxlor/froxlor <2.0.8 - Command Injection
Title source: llmDescription
Command Injection in GitHub repository froxlor/froxlor prior to 2.0.8.
Exploits (3)
metasploit
WORKING POC
EXCELLENT
by Askar, jheysel-r7 · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/froxlor_log_path_rce.rb
References (4)
Scores
CVSS v3
8.8
EPSS
0.8913
EPSS Percentile
99.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-77
Status
published
Products (2)
froxlor/froxlor
< 2.0.8
froxlor/froxlor
0 - 2.0.8Packagist
Published
Jan 16, 2023
Tracked Since
Feb 18, 2026