Record summary

CVE-2023-2648 has a selected CVSS score of 6.3 (medium); EIP currently links 1 repository PoC and 1 Nuclei template.

Description

A vulnerability was found in Weaver E-Office 9.5. It has been classified as critical. This affects an unknown part of the file /inc/jquery/uploadify/uploadify.php. The manipulation of the argument Filedata leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-228777 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Mar 7, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Repository PoCs
1
Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 24, 2025 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List, VulnCheck9.5affected

Proofs of concept

1

Repository PoCs

GitHubwerwolfz/cve-2023-2523-and-cve-2023-2648Repository PoCby werwolfzStars: 0Not analyzed3 files

8.5 KiB · linked to 2 vulnerabilities

GitHub

PoC details

Nuclei templates

1
ProjectDiscoveryCRITICALWeaver E-Office 9.5 - Remote Code ExecutionCVSS 9.8

A vulnerability was found in Weaver E-Office 9.5. It has been classified as critical. This affects an unknown part of the file /inc/jquery/uploadify/uploadify.php. The manipulation of the argument Filedata leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-228777 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Impact

Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code on the affected system.

Remediation

Apply the latest security patch or upgrade to a patched version of Weaver E-Office.

WeaknessesCWE-434
Authorsritikchaddha
Template tagscve2023cveweavereofficeecologyfileuploadrceintrusivevkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:weaver:e-office:9.5:*:*:*:*:*:*:*
FOFA: app="泛微-EOffice"
FOFA: app="泛微-eoffice"

Source: ProjectDiscovery

References

4