CVE-2023-5965
MEDIUMEspoCRM < 7.5.2 - Authenticated Remote Code Execution via Zip Upload in Update Form
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-5965. PoCs published by josemlwdf.
AI-analyzed exploit summary This PoC demonstrates arbitrary PHP code execution in EspoCRM 7.2.5 via authenticated upload of a crafted ZIP file through either the update or extension deployment forms. The exploit uploads a web shell to `/webshell.php` for remote command execution.
Description
An authenticated privileged attacker could upload a specially crafted zip to the EspoCRM server in version 7.2.5, via the update form, which could lead to arbitrary PHP code execution.
Exploits (1)
This PoC demonstrates arbitrary PHP code execution in EspoCRM 7.2.5 via authenticated upload of a crafted ZIP file through either the update or extension deployment forms. The exploit uploads a web shell to `/webshell.php` for remote command execution.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L